CVE-2019-12591

NETGEAR Insight Cloud with firmware before Insight 5.6 allows remote authenticated users to achieve command injection.
Configurations

Configuration 1 (hide)

cpe:2.3:o:netgear:insight:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:23

Type Values Removed Values Added
CVSS v2 : 6.5
v3 : 7.6
v2 : 6.5
v3 : 6.8
References () https://kb.netgear.com/000060977/Security-Advisory-for-Post-Authentication-Command-Injection-on-Insight-Cloud-PSV-2018-0366 - Vendor Advisory () https://kb.netgear.com/000060977/Security-Advisory-for-Post-Authentication-Command-Injection-on-Insight-Cloud-PSV-2018-0366 - Vendor Advisory

Information

Published : 2019-06-03 13:29

Updated : 2024-11-21 04:23


NVD link : CVE-2019-12591

Mitre link : CVE-2019-12591

CVE.ORG link : CVE-2019-12591


JSON object : View

Products Affected

netgear

  • insight
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')