CVE-2024-30572
Severity CVSS v4.0:
Pending analysis
Type:
CWE-77
Command Injection
Publication date:
03/04/2024
Last modified:
04/04/2025
Description
Netgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the ntp_server parameter.
Impact
Base Score 3.x
8.00
Severity 3.x
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:netgear:r6850_firmware:1.1.0.88:*:*:*:*:*:*:* | ||
cpe:2.3:h:netgear:r6850:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://github.com/funny-mud-peee/IoT-vuls/blob/main/netgear%20R6850/Netgear-R6850%20V1.1.0.88%20Command%20Injection%28ntp_server%29.md
- https://www.netgear.com/about/security/
- https://github.com/funny-mud-peee/IoT-vuls/blob/main/netgear%20R6850/Netgear-R6850%20V1.1.0.88%20Command%20Injection%28ntp_server%29.md
- https://www.netgear.com/about/security/