CISA Known Exploited Vulnerability

CVE-2016-6277

NETGEAR · Multiple Routers

NETGEAR Multiple Routers Remote Code Execution Vulnerability

Date added
BOD 22-01 due date
CWE CWE-352
Ransomware Unknown

CISA description

NETGEAR confirmed multiple routers allow unauthenticated web pages to pass form input directly to the command-line interface, permitting remote code execution.

Required action

Apply updates per vendor instructions.