Netgear Product Security Update Advisory (CVE-2024-12847)

Overview

We have released a security update to fix vulnerabilities in Netgear products. Users of affected products are advised to update to the latest version.

 

Affected Products

 

CVE-2024-12847

Netgear DGN1000 Versions: ~ 1.1.00.48 (excluded)

 

Resolved Vulnerabilities

OS Command Injection Vulnerability in the Netgear DGN1000 (CVE-2024-12847)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2024-12847

Netgear DGN1000 Version: 1.1.00.48

 

 

References

[1] NETGEAR DGN setup.cgi OS Command Execution
https://vulncheck.com/advisories/netgear-dgn
[2]Unauthenticated command execution on Netgear DGN devices
https://seclists.org/bugtraq/2013/Jun/8