cbcvebase.
CVE-2019-20655
published 2020-04-15

CVE-2019-20655: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects XR500 before 2.3.2.56 and XR700 before 1.0.1.20.

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects XR500 before 2.3.2.56 and XR700 before 1.0.1.20.

Affected

2 ranges
VendorProductVersion rangeFixed in
netgearxr500_firmware< 2.3.2.562.3.2.56
netgearxr700_firmware< 1.0.1.201.0.1.20