CVE-2024-35518: NETGEAR EX6120 Firmware

Medium severity, CVSS 6.8. EPSS: 1% chance of exploitation in the next 30 days.

Netgear EX6120 v1.0.0.68 is vulnerable to Command Injection in genie_fix2.cgi via the wan_dns1_pri parameter.

Affected products

  • NETGEAR EX6120 Firmware: up to and including 1.0.0.68

Published 2024-10-14. Last modified 2026-06-17.