Command Injection Vulnerability in NETGEAR Routers and Gateways
CVE-2019-20705
6.3MEDIUM
What is CVE-2019-20705?
Certain NETGEAR devices are susceptible to a command injection vulnerability that can be exploited by an authenticated user. This issue affects the D3600 prior to version 1.0.0.76, the D6000 prior to version 1.0.0.76, and the XR500 prior to version 2.3.2.32. Attackers with valid credentials could execute arbitrary commands on the affected devices, potentially leading to unauthorized access and control.