cbcvebase.
CVE-2017-18754
published 2020-04-22

CVE-2017-18754: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WNDR3700v4 before 1.0.2.88, WNDR4300v1 before 1.0.2.90, and…

medium6.8CVSS 3.1
AVAACLPRHUINSUCHIHAH
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WNDR3700v4 before 1.0.2.88, WNDR4300v1 before 1.0.2.90, and WNR2000v5 before 1.0.0.58.

Affected

3 ranges
VendorProductVersion rangeFixed in
netgearwndr3700_firmware< 1.0.2.881.0.2.88
netgearwndr4300_firmware< 1.0.2.901.0.2.90
netgearwnr2000_firmware< 1.0.0.581.0.0.58