Home/CVEs/CVE-2016-1555/

CVE-2016-1555 - NETGEAR Multiple WAP Devices Command Injection Vulnerability

Project:NETGEAR

Product:Wireless Access Point (WAP) Devices

Date Added:2022-03-25Due Date:2022-04-15

Vulnerability Name

NETGEAR Multiple WAP Devices Command Injection Vulnerability

Description

Multiple NETGEAR Wireless Access Point devices allows unauthenticated web pages to pass form input directly to the command-line interface. Exploitation allows for arbitrary code execution.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2016-1555