Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-64075
HistoryMar 23, 2023 - 12:00 a.m.

NETGEAR RBR750 dev_name Parameter Command Injection Vulnerability

2023-03-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
netgear rbr750
command injection
dev_name parameter
vulnerability
arbitrary command execution
security

EPSS

0.001

Percentile

40.8%

The NETGEAR RBR750 is a home WiFi system from NETGEAR. The NETGEAR RBR750 version 4.6.8.5 suffers from a command injection vulnerability that stems from the dev_name parameter failing to properly filter constructed command special characters, commands, and so on. An attacker could exploit this vulnerability to cause arbitrary command execution.

EPSS

0.001

Percentile

40.8%

Related for CNVD-2023-64075