CVE-2024-54806

CWE-94Code Injection3 documents3 sources
Severity
9.8CRITICAL
EPSS
1.4%
top 19.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 31

Description

Netgear WNR854T 1.5.2 (North America) is vulnerable to Arbitrary command execution in cmd.cgi which allows for the execution of system commands via the web interface.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
CVEList
CVE-2024-54806: Netgear WNR854T 12025-03-31
GHSA
GHSA-fpgq-9jcf-446p: Netgear WNR854T 12025-03-31
CVE-2024-54806 (CRITICAL CVSS 9.8) | Netgear WNR854T 1.5.2 (North Americ | cvebase.io