CVE-2017-18734
Summary
| CVE | CVE-2017-18734 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-23 17:15:00 UTC |
| Updated | 2020-04-23 22:22:00 UTC |
| Description | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.10, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.18, R6050 before 1.0.1.10, R6220 before 1.1.0.50, R6700v2 before 1.2.0.4, R6800 before 1.2.0.4, R6900v2 before 1.2.0.4, WNDR3700v5 before 1.1.0.48, WNR1000v4 before 1.1.0.44, WNR2020 before 1.1.0.44, and WNR2050 before 1.1.0.44. |
Risk And Classification
Problem Types: CWE-74
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Jnr1010 | v2 | All | All | All |
| Hardware | Netgear | Jnr1010 | v2 | All | All | All |
| Operating System | Netgear | Jnr1010 Firmware | All | All | All | All |
| Operating System | Netgear | Jnr1010 Firmware | All | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Hardware | Netgear | Jwnr2010 | v5 | All | All | All |
| Hardware | Netgear | Jwnr2010 | v5 | All | All | All |
| Operating System | Netgear | Jwnr2010 Firmware | All | All | All | All |
| Operating System | Netgear | Jwnr2010 Firmware | All | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Hardware | Netgear | Pr2000 | - | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Operating System | Netgear | Pr2000 Firmware | All | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Hardware | Netgear | R6700 | v2 | All | All | All |
| Hardware | Netgear | R6700 | v2 | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Hardware | Netgear | R6800 | - | All | All | All |
| Hardware | Netgear | R6800 | - | All | All | All |
| Operating System | Netgear | R6800 Firmware | All | All | All | All |
| Operating System | Netgear | R6800 Firmware | All | All | All | All |
| Hardware | Netgear | R6900 | v2 | All | All | All |
| Hardware | Netgear | R6900 | v2 | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr1000 | v4 | All | All | All |
| Hardware | Netgear | Wnr1000 | v4 | All | All | All |
| Operating System | Netgear | Wnr1000 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr1000 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Hardware | Netgear | Wnr2020 | - | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2020 Firmware | All | All | All | All |
| Hardware | Netgear | Wnr2050 | - | All | All | All |
| Hardware | Netgear | Wnr2050 | - | All | All | All |
| Operating System | Netgear | Wnr2050 Firmware | All | All | All | All |
| Operating System | Netgear | Wnr2050 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Pre-Authentication Command Injection on Some Routers and Extenders, PSV-2017-2154 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.