CVE-2017-18735
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects JR6150 before 1.0.1.10, PR2000 before 1.0.0.18, R6050 before 1.0.1.10, R6700v2 before 1.2.0.4, R6800 before 1.2.0.4, and R6900v2 before 1.2.0.4.
Published:Apr 23, 2020
Last Modified:Nov 21, 2024
EPS:Apr 23, 2020
EPSS Score:0.00212
CVSS Score:8.8
Affected Products
Vendor
Product
Action
Vendor
Netgear
Product
Jr6150
Netgear
Jr6150
Vendor
Netgear
Product
Jr6150 Firmware
Netgear
Jr6150 Firmware
Vendor
Netgear
Product
Pr2000
Netgear
Pr2000
Vendor
Netgear
Product
Pr2000 Firmware
Netgear
Pr2000 Firmware
Vendor
Netgear
Product
R6050
Netgear
R6050
Vendor
Netgear
Product
R6050 Firmware
Netgear
R6050 Firmware
Vendor
Netgear
Product
R6700
Netgear
R6700
Vendor
Netgear
Product
R6700 Firmware
Netgear
R6700 Firmware
Vendor
Netgear
Product
R6800
Netgear
R6800
Vendor
Netgear
Product
R6800 Firmware
Netgear
R6800 Firmware
Vendor
Netgear
Product
R6900
Netgear
R6900
Vendor
Netgear
Product
R6900 Firmware
Netgear
R6900 Firmware
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
