High severity7.2NVD Advisory· Published Mar 23, 2020· Updated Jun 17, 2026
CVE-2016-11022
CVE-2016-11022
Description
NETGEAR Prosafe WC9500 5.1.0.17, WC7600 5.1.0.17, and WC7520 2.5.0.35 devices allow a remote attacker to execute code with root privileges via shell metacharacters in the reqMethod parameter to login_handler.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- cpe:2.3:o:netgear:prosafe_wc7520_firmware:2.5.0.35:*:*:*:*:*:*:*
- cpe:2.3:o:netgear:prosafe_wc7600_firmware:5.1.0.17:*:*:*:*:*:*:*
- cpe:2.3:o:netgear:prosafe_wc9500_firmware:5.1.0.17:*:*:*:*:*:*:*
- NETGEAR/Prosafe devicesdescription
- Range: 5.1.0.17
- Range: 5.1.0.17
- Range: 2.5.0.35
Patches
Vulnerability mechanics
References
3- firmware.re/vulns/acsa-2015-002.phpnvdExploitThird Party Advisory
- github.com/threat9/routersploit/blob/master/routersploit/modules/exploits/routers/netgear/prosafe_rce.pynvdExploitThird Party Advisory
- unit42.paloaltonetworks.com/new-mirai-variant-targets-enterprise-wireless-presentation-display-systems/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.