Command Injection Vulnerability in NETGEAR Routers and Gateways
CVE-2019-20702
6.3MEDIUM
What is CVE-2019-20702?
Certain NETGEAR routers and gateways are vulnerable to a command injection attack. This allows an authenticated user to execute arbitrary commands on the affected device, potentially leading to unauthorized access and exploitation. The impacted products are the D3600, D6000, and XR500, which must be updated to specific versions to mitigate this risk. Organizations using these devices should promptly apply the available security updates to safeguard their networks.