CVE-2018-21113

Scores

EPSS

0.000none0.0%
0%20%40%60%80%100%

Percentile: 0.0%

CVSS

8.8high3.x
0246810

CVSS Score: 8.8/10

All CVSS Scores

CVSS 3.x
8.8

Vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS 2.0
5.8

Vector: AV:A/AC:L/Au:N/C:P/I:P/A:P

Description

Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.42, R6100 before 1.0.1.28, R7500 before 1.0.0.130, R7500v2 before 1.0.3.36, R7800 before 1.0.2.52, R8900 before 1.0.4.12, R9000 before 1.0.4.12, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.56, and WNDR4500v3 before 1.0.0.56.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-74

Vulnerable Software (12)

Type: Configuration

Vendor: netgear

Product: d6100_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:d6100_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.0.58",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: d7800_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:d7800_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.1.42",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r6100_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r6100_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.1.28",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r7500_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r7500_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.0.130",          "vulnerable": t...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r7500_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r7500_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.3.36",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r7800_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r7800_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.2.52",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r8900_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r8900_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.4.12",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: r9000_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:r9000_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.4.12",          "vulnerable": tr...

Source: nvd

Type: Configuration

Vendor: netgear

Product: wndr3700_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:wndr3700_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.2.102",          "vulnerable"...

Source: nvd

Type: Configuration

Vendor: netgear

Product: wndr4300_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:netgear:wndr4300_firmware:*:*:*:*:*:*:*:*",          "versionEndExcluding": "1.0.2.104",          "vulnerable"...

Source: nvd