Critical severity9.8NVD Advisory· Published Mar 2, 2020· Updated Jun 17, 2026
CVE-2019-20488
CVE-2019-20488
Description
An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the web management interface (setup.cgi) are vulnerable to command injection, allowing remote attackers to execute arbitrary commands, as demonstrated by shell metacharacters in the sysDNSHost parameter.
Affected products
3- cpe:2.3:o:netgear:wnr1000_firmware:1.1.0.54:*:*:*:*:*:*:*
- NETGEAR/WNR1000V4description
Patches
Vulnerability mechanics
References
1- www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2019/august/the-netgear-wnr1000v4-round-2/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.