CVE-2018-21117: NETGEAR XR500 Firmware
High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.
NETGEAR XR500 devices before 2.3.2.32 are affected by remote code execution by unauthenticated attackers via the traceroute handler.
Affected products
- NETGEAR XR500 Firmware: before 2.3.2.32 (fixed in 2.3.2.32)
Published 2020-04-22. Last modified 2026-06-17.