Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000 before 1.0.1.60, D7800 before 1.0.1.34, D8500 before 1.0.3.39, R6700 before 1.0.1.30, R6700v2 before 1.2.0.16, R6800 before 1.2.0.16, R6900 before 1.0.1.30, R6900P before 1.2.0.22, R6900v2 before 1.2.0.16, R7000 before 1.0.9.12, R7000P before 1.2.0.22, R7500v2 before 1.0.3.20, R7800 before 1.0.2.44, R8300 before 1.0.2.106, R8500 before 1.0.2.106, and R9000 before 1.0.2.52.

Project Subscriptions

Vendors Products
Netgear Subscribe
D7000 Firmware Subscribe
D7800 Firmware Subscribe
D8500 Firmware Subscribe
R6700 Firmware Subscribe
R6800 Firmware Subscribe
R6900 Firmware Subscribe
R6900p Firmware Subscribe
R7000 Firmware Subscribe
R7000p Firmware Subscribe
R7500 Firmware Subscribe
R7800 Firmware Subscribe
R8300 Firmware Subscribe
R8500 Firmware Subscribe
R9000 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2018-13743 Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000 before 1.0.1.60, D7800 before 1.0.1.34, D8500 before 1.0.3.39, R6700 before 1.0.1.30, R6700v2 before 1.2.0.16, R6800 before 1.2.0.16, R6900 before 1.0.1.30, R6900P before 1.2.0.22, R6900v2 before 1.2.0.16, R7000 before 1.0.9.12, R7000P before 1.2.0.22, R7500v2 before 1.0.3.20, R7800 before 1.0.2.44, R8300 before 1.0.2.106, R8500 before 1.0.2.106, and R9000 before 1.0.2.52.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T12:26:39.568Z

Reserved: 2020-04-20T00:00:00.000Z

Link: CVE-2018-21225

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-28T17:15:13.163

Modified: 2024-11-21T04:03:13.433

Link: CVE-2018-21225

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses