A command execution vulnerability exists in the hidden telnet service functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.
                
            References
                    Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 07:16
| Type | Values Removed | Values Added | 
|---|---|---|
| CVSS | v2 : v3 : | v2 : unknown v3 : 7.2 | 
| References | 
 | |
| References | () https://kb.netgear.com/000065567/Security-Advisory-for-Post-authentication-Command-Injection-on-the-RBR750-PSV-2022-0186 - | |
| References | () https://talosintelligence.com/vulnerability_reports/TALOS-2022-1595 - Exploit, Third Party Advisory | 
29 Mar 2023, 11:15
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | CWE-912 | |
| References | 
 | 
24 Mar 2023, 19:17
| Type | Values Removed | Values Added | 
|---|---|---|
| References | (MISC) https://talosintelligence.com/vulnerability_reports/TALOS-2022-1595 - Exploit, Third Party Advisory | |
| CWE | NVD-CWE-Other | |
| CVSS | v2 : v3 : | v2 : unknown v3 : 8.8 | 
| First Time | Netgear rbs750 Netgear Netgear rbs750 Firmware | |
| CPE | cpe:2.3:o:netgear:rbs750_firmware:4.6.8.5:*:*:*:*:*:*:* cpe:2.3:h:netgear:rbs750:-:*:*:*:*:*:*:* | 
Information
                Published : 2023-03-21 18:15
Updated : 2024-11-21 07:16
NVD link : CVE-2022-38452
Mitre link : CVE-2022-38452
CVE.ORG link : CVE-2022-38452
JSON object : View
Products Affected
                netgear
- rbs750_firmware
- rbs750
CWE
                