CVE-2018-21123

Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects WC7500 before 6.5.3.9, WC7520 before 6.5.3.9, WC7600v1 before 6.5.3.9, and WC7600v2 before 6.5.3.9.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:wc7500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wc7500:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:netgear:wc7520_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wc7520:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:netgear:wc7600_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wc7600:v1:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:netgear:wc7600_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wc7600:v2:*:*:*:*:*:*:*

Information

Published : 2020-04-22 09:15

Updated : 2020-04-24 13:13


NVD link : CVE-2018-21123

Mitre link : CVE-2018-21123


JSON object : View

CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

Advertisement

dedicated server usa

Products Affected

netgear

  • wc7500_firmware
  • wc7500
  • wc7600
  • wc7520
  • wc7520_firmware
  • wc7600_firmware