CVE-2024-51015: NETGEAR r7000p Firmware
Medium severity, CVSS 5.7. EPSS: 0.6% chance of exploitation in the next 30 days.
Netgear R7000P v1.3.3.154 was discovered to contain a command injection vulnerability via the device_name2 parameter at operation_mode.cgi. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.
Affected products
- NETGEAR r7000p Firmware: version 1.3.3.154 only
Published 2024-11-05. Last modified 2026-06-17.