Loading HuntDB...

GHSA-gv3h-6f48-rrfp

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a command injection vulnerability in the component wlg_adv.cgi via the apmode_gateway parameter. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.

Related CVEs

Key Information

GHSA ID
GHSA-gv3h-6f48-rrfp
Published
November 5, 2024 3:30 PM
Last Modified
November 5, 2024 6:32 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 29, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.