CVE-2017-18860

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
29/04/2020
Last modified:
04/01/2022

Description

Certain NETGEAR devices are affected by debugging command execution. This affects FS752TP 5.4.2.19 and earlier, GS108Tv2 5.4.2.29 and earlier, GS110TP 5.4.2.29 and earlier, GS418TPP 6.6.2.6 and earlier, GS510TLP 6.6.2.6 and earlier, GS510TP 5.04.2.27 and earlier, GS510TPP 6.6.2.6 and earlier, GS716Tv2 5.4.2.27 and earlier, GS716Tv3 6.3.1.16 and earlier, GS724Tv3 5.4.2.27 and earlier, GS724Tv4 6.3.1.16 and earlier, GS728TPSB 5.3.0.29 and earlier, GS728TSB 5.3.0.29 and earlier, GS728TXS 6.1.0.35 and earlier, GS748Tv4 5.4.2.27 and earlier, GS748Tv5 6.3.1.16 and earlier, GS752TPSB 5.3.0.29 and earlier, GS752TSB 5.3.0.29 and earlier, GS752TXS 6.1.0.35 and earlier, M4200 12.0.2.10 and earlier, M4300 12.0.2.10 and earlier, M5300 11.0.0.28 and earlier, M6100 11.0.0.28 and earlier, M7100 11.0.0.28 and earlier, S3300 6.6.1.4 and earlier, XS708T 6.6.0.11 and earlier, XS712T 6.1.0.34 and earlier, and XS716T 6.6.0.11 and earlier.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:fs752tp_firmware:*:*:*:*:*:*:*:* 5.4.2.19 (including)
cpe:2.3:h:netgear:fs752tp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs108t_firmware:*:*:*:*:*:*:*:* 5.4.2.29 (including)
cpe:2.3:h:netgear:gs108tv2:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs110tp_firmware:*:*:*:*:*:*:*:* 5.4.2.29 (including)
cpe:2.3:h:netgear:gs110tp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs418tpp_firmware:*:*:*:*:*:*:*:* 6.6.2.6 (including)
cpe:2.3:h:netgear:gs418tpp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs510tlp_firmware:*:*:*:*:*:*:*:* 6.6.2.6 (including)
cpe:2.3:h:netgear:gs510tlp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs510tp_firmware:*:*:*:*:*:*:*:* 5.04.2.27 (including)
cpe:2.3:h:netgear:gs510tp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs510tpp_firmware:*:*:*:*:*:*:*:* 6.6.2.6 (including)
cpe:2.3:h:netgear:gs510tpp:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs716t_firmware:*:*:*:*:*:*:*:* 5.4.2.27 (including)