cbcvebase.
CVE-2020-26920
published 2020-10-09

CVE-2020-26920: Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5.3.110, SRR60 before 2.5.3.110, and…

high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5.3.110, SRR60 before 2.5.3.110, and SRS60 before 2.5.3.110.

Affected

3 ranges
VendorProductVersion rangeFixed in
netgearsrk60_firmware< 2.5.3.1102.5.3.110
netgearsrr60_firmware< 2.5.3.1102.5.3.110
netgearsrs60_firmware< 2.5.3.1102.5.3.110