CVE-2023-38928: NETGEAR r7100lg Firmware

Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Netgear R7100LG 1.0.0.78 was discovered to contain a command injection vulnerability via the password parameter at usb_remote_invite.cgi.

Affected products

  • NETGEAR r7100lg Firmware: version 1.0.0.78 only

Published 2023-08-07. Last modified 2026-06-17.