Vulnerability Details CVE-2019-20688
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6100 before 1.0.0.63, EX2700 before 1.0.1.48, EX6100v2 before 1.0.1.76, EX6150v2 before 1.0.1.76, EX6200v2 before 1.0.1.72, EX6400 before 1.0.2.136, EX7300 before 1.0.2.136, EX8000 before 1.0.1.180, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.4.2, WN2000RPTv3 before 1.0.1.32, WN3000RPv2 before 1.0.0.68, WN3100RPv2 before 1.0.0.60, WNDR3700v4 before 1.0.2.102, WNDR4300v1 before 1.0.2.104, WNDR4300v2 before 1.0.0.58, WNDR4500v3 before 1.0.0.58, WNR2000v5 before 1.0.0.68, and XR500 before 2.3.2.32.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.4%
CVSS Severity
CVSS v3 Score 6.8
CVSS v2 Score 5.2
Products affected by CVE-2019-20688
-
cpe:2.3:h:netgear:d3600:-
-
cpe:2.3:h:netgear:d6000:-
-
cpe:2.3:h:netgear:d6100:-
-
cpe:2.3:h:netgear:ex2700:-
-
cpe:2.3:h:netgear:ex6100:v2
-
cpe:2.3:h:netgear:ex6150:v2
-
cpe:2.3:h:netgear:ex6200:v2
-
cpe:2.3:h:netgear:ex6400:-
-
cpe:2.3:h:netgear:ex7300:-
-
cpe:2.3:h:netgear:ex8000:-
-
cpe:2.3:h:netgear:r7800:-
-
cpe:2.3:h:netgear:r8900:-
-
cpe:2.3:h:netgear:r9000:-
-
cpe:2.3:h:netgear:wn2000rpt:v3
-
cpe:2.3:h:netgear:wn3000rp:v2
-
cpe:2.3:h:netgear:wn3100rp:v2
-
cpe:2.3:h:netgear:wndr3700:v4
-
cpe:2.3:h:netgear:wndr4300:v1
-
cpe:2.3:h:netgear:wndr4300:v2
-
cpe:2.3:h:netgear:wndr4500:v3
-
cpe:2.3:h:netgear:wnr2000:v5
-
cpe:2.3:h:netgear:xr500:-
-
cpe:2.3:o:netgear:d3600_firmware:-
-
cpe:2.3:o:netgear:d3600_firmware:1.0.0.49
-
cpe:2.3:o:netgear:d3600_firmware:1.0.0.61
-
cpe:2.3:o:netgear:d3600_firmware:1.0.0.67
-
cpe:2.3:o:netgear:d3600_firmware:1.0.0.68
-
cpe:2.3:o:netgear:d3600_firmware:1.0.0.72
-
cpe:2.3:o:netgear:d3600_firmware:_1.0.0.49
-
cpe:2.3:o:netgear:d6000_firmware:-
-
cpe:2.3:o:netgear:d6000_firmware:1.0.0.49
-
cpe:2.3:o:netgear:d6000_firmware:1.0.0.61
-
cpe:2.3:o:netgear:d6000_firmware:1.0.0.67
-
cpe:2.3:o:netgear:d6000_firmware:1.0.0.68
-
cpe:2.3:o:netgear:d6000_firmware:1.0.0.72
-
cpe:2.3:o:netgear:d6100_firmware:-
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.50_0.0.50
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.55
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.56
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.57
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.58
-
cpe:2.3:o:netgear:d6100_firmware:1.0.0.60
-
cpe:2.3:o:netgear:ex2700_firmware:-
-
cpe:2.3:o:netgear:ex2700_firmware:1.0.1.28
-
cpe:2.3:o:netgear:ex2700_firmware:1.0.1.32
-
cpe:2.3:o:netgear:ex2700_firmware:1.0.1.42
-
cpe:2.3:o:netgear:ex6100_firmware:-
-
cpe:2.3:o:netgear:ex6100_firmware:1.0.1.50
-
cpe:2.3:o:netgear:ex6100_firmware:1.0.1.54
-
cpe:2.3:o:netgear:ex6100_firmware:1.0.1.60
-
cpe:2.3:o:netgear:ex6100_firmware:1.0.1.70
-
cpe:2.3:o:netgear:ex6150_firmware:-
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.34_1.0.70
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.36
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.38
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.42
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.46
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.0.48
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.1.50
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.1.54
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.1.60
-
cpe:2.3:o:netgear:ex6150_firmware:1.0.1.70
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.44
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.50
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.52
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.56
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.62
-
cpe:2.3:o:netgear:ex6200_firmware:1.0.1.64
-
cpe:2.3:o:netgear:ex6400_firmware:-
-
cpe:2.3:o:netgear:ex6400_firmware:1.0.0.132
-
cpe:2.3:o:netgear:ex6400_firmware:1.0.1.60
-
cpe:2.3:o:netgear:ex6400_firmware:1.0.1.72
-
cpe:2.3:o:netgear:ex6400_firmware:1.0.1.78
-
cpe:2.3:o:netgear:ex7300_firmware:-
-
cpe:2.3:o:netgear:ex7300_firmware:1.0.1
-
cpe:2.3:o:netgear:ex7300_firmware:1.0.1.60
-
cpe:2.3:o:netgear:ex7300_firmware:1.0.1.62
-
cpe:2.3:o:netgear:ex7300_firmware:1.0.1.72
-
cpe:2.3:o:netgear:ex7300_firmware:1.0.1.78
-
cpe:2.3:o:netgear:ex8000_firmware:-
-
cpe:2.3:o:netgear:ex8000_firmware:1.0.0.102
-
cpe:2.3:o:netgear:ex8000_firmware:1.0.0.114
-
cpe:2.3:o:netgear:ex8000_firmware:1.0.0.118
-
cpe:2.3:o:netgear:r7800_firmware:-
-
cpe:2.3:o:netgear:r7800_firmware:1.0.1.30
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.16
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.28
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.30
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.32
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.36
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.38
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.40
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.42
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.44
-
cpe:2.3:o:netgear:r7800_firmware:1.0.2.46
-
cpe:2.3:o:netgear:r8900_firmware:-
-
cpe:2.3:o:netgear:r8900_firmware:1.0.2.60
-
cpe:2.3:o:netgear:r8900_firmware:1.0.3.10
-
cpe:2.3:o:netgear:r8900_firmware:1.0.3.6
-
cpe:2.3:o:netgear:r9000_firmware:-
-
cpe:2.3:o:netgear:r9000_firmware:1.0.2.30
-
cpe:2.3:o:netgear:r9000_firmware:1.0.2.4
-
cpe:2.3:o:netgear:r9000_firmware:1.0.2.40
-
cpe:2.3:o:netgear:r9000_firmware:1.0.2.52
-
cpe:2.3:o:netgear:r9000_firmware:1.0.3.10
-
cpe:2.3:o:netgear:r9000_firmware:1.0.3.16
-
cpe:2.3:o:netgear:r9000_firmware:1.0.3.6
-
cpe:2.3:o:netgear:wn2000rpt_firmware:1.0.1.14
-
cpe:2.3:o:netgear:wn2000rpt_firmware:1.0.1.20
-
cpe:2.3:o:netgear:wn2000rpt_firmware:1.0.1.26
-
cpe:2.3:o:netgear:wn2000rpt_firmware:1.0.1.8
-
cpe:2.3:o:netgear:wn3000rp_firmware:1.0.0.52
-
cpe:2.3:o:netgear:wn3000rp_firmware:1.0.0.56
-
cpe:2.3:o:netgear:wn3100rp_firmware:1.0.0.20
-
cpe:2.3:o:netgear:wn3100rp_firmware:1.0.0.40
-
cpe:2.3:o:netgear:wn3100rp_firmware:1.0.0.42
-
cpe:2.3:o:netgear:wn3100rp_firmware:1.0.0.56
-
cpe:2.3:o:netgear:wndr3700_firmware:-
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.1.14
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.2.86
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.2.88
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.2.92
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.2.94
-
cpe:2.3:o:netgear:wndr3700_firmware:1.0.2.96
-
cpe:2.3:o:netgear:wndr4300_firmware:-
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.48
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.50
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.52
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.54
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.56
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.0.58
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.88
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.90
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.92
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.94
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.96
-
cpe:2.3:o:netgear:wndr4300_firmware:1.0.2.98
-
cpe:2.3:o:netgear:wndr4500_firmware:-
-
cpe:2.3:o:netgear:wndr4500_firmware:1.0.0.48
-
cpe:2.3:o:netgear:wndr4500_firmware:1.0.0.50
-
cpe:2.3:o:netgear:wndr4500_firmware:1.0.0.52
-
cpe:2.3:o:netgear:wndr4500_firmware:1.0.0.54
-
cpe:2.3:o:netgear:wndr4500_firmware:1.0.0.56
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.42
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.48
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.58
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.62
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.64
-
cpe:2.3:o:netgear:wnr2000_firmware:1.0.0.66
-
cpe:2.3:o:netgear:xr500_firmware:-
-
cpe:2.3:o:netgear:xr500_firmware:2.3.2.22