Vulnerability Description
Certain NETGEAR devices are affected by command injection. This affects D6220 before 1.0.0.28 and D6100 before 1.0.0.50_0.0.50.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | D6220 Firmware | < 1.0.0.28 |
| Netgear | D6220 | - |
| Netgear | D6100 Firmware | < 1.0.0.50_0.0.50 |
| Netgear | D6100 | - |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000049367/Security-Advisory-for-Command-Injection-VulneraVendor Advisory
- https://kb.netgear.com/000049367/Security-Advisory-for-Command-Injection-VulneraVendor Advisory
FAQ
What is CVE-2017-18795?
CVE-2017-18795 is a vulnerability with a CVSS score of 6.7 (MEDIUM). Certain NETGEAR devices are affected by command injection. This affects D6220 before 1.0.0.28 and D6100 before 1.0.0.50_0.0.50.
How severe is CVE-2017-18795?
CVE-2017-18795 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-18795?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear D6220 Firmware, Netgear D6220, Netgear D6100 Firmware, Netgear D6100.