← Back to browse · API

CVE-2023-33532

Severity
CRITICAL
CVSS
9.8
EPSS
0.16171
Risk score
44.86
CISA KEV
No
PoC
No
Published
2023-06-06
Modified
2026-07-09
First seen
2026-08-07
Aliases
EUVD-2023-37691, GHSA-M27W-5XF6-X4R2
Products
n/a:n/a n/a
Sources
euvd EUVD-2023-37691

Description

There is a command injection vulnerability in the Netgear R6250 router with Firmware Version 1.0.4.48. If an attacker gains web management privileges, they can inject commands into the post request parameters, thereby gaining shell privileges.

References