Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
CVE's Videos

← Terug naar CVE-database

CVE-2016-1555

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-77

Beschrijving NL

Met meerdere NETGEAR Wireless Access Point-apparaten kunnen niet-geverifieerde webpagina's formulierinvoer rechtstreeks naar de opdrachtregelinterface sturen. Uitbuiting maakt willekeurige code-uitvoering mogelijk.

Vereiste actie: voer updates uit volgens de instructies van de leverancier.

Origineel (Engels) tonen

Multiple NETGEAR Wireless Access Point devices allows unauthenticated web pages to pass form input directly to the command-line interface. Exploitation allows for arbitrary code execution.

Required action: Apply updates per vendor instructions.

Vendors

Netgear

Affected products

Wireless Access Point (wap) Devices

References