target entity

NETGEAR

8 source-linked records in the current knowledge graph.

high

CVE-2017-6334: NETGEAR DGN2200 Devices OS Command Injection Vulnerability

dnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands Required action: The impacted product is end-of-life and should be disconnected if still in use.

CVE-2017-6334EPSS 72.2%DGN2200 DevicesNETGEAR
CISA KEV ↗ · unattributed attribution · 2 IOCs
high

CVE-2016-1555: NETGEAR Multiple WAP Devices Command Injection Vulnerability

Multiple NETGEAR Wireless Access Point devices allows unauthenticated web pages to pass form input directly to the command-line interface. Exploitation allows for arbitrary code execution. Required action: Apply updates per vendor instructions.

CVE-2016-1555EPSS 98.3%NETGEARWireless Access Point (WAP) Devices
CISA KEV ↗ · unattributed attribution