cve/2017/CVE-2017-18754.md

18 lines
723 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2017-18754](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-18754)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WNDR3700v4 before 1.0.2.88, WNDR4300v1 before 1.0.2.90, and WNR2000v5 before 1.0.0.58.
### POC
#### Reference
- https://kb.netgear.com/000051494/Security-Advisory-for-Post-Authentication-Command-Injection-on-Routers-PSV-2017-0329
#### Github
No PoCs found on GitHub currently.