CVE-2024-52019: NETGEAR r8500 Firmware
High severity, CVSS 8.0. EPSS: 1.6% chance of exploitation in the next 30 days.
Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at genie_fix2.cgi. This vulnerability allows attackers to execute arbitrary OS commands via a crafted request.
Affected products
- NETGEAR r8500 Firmware: version 1.0.2.160 only
Published 2024-11-05. Last modified 2026-06-17.