CVE-2020-11789: NETGEAR r6400 Firmware
Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700 before 1.0.2.8, R6700v3 before 1.0.4.84, R6900 before 1.0.2.8, and R7900 before 1.0.3.10.
Affected products
- NETGEAR r6400 Firmware: before 1.0.4.84 (fixed in 1.0.4.84)
- NETGEAR r6700 Firmware: before 1.0.2.8 (fixed in 1.0.2.8); before 1.0.4.84 (fixed in 1.0.4.84)
- NETGEAR r6900 Firmware: before 1.0.2.8 (fixed in 1.0.2.8)
- NETGEAR r7900 Firmware: before 1.0.3.10 (fixed in 1.0.3.10)
Published 2020-04-15. Last modified 2026-06-17.