NETGEAR JR6150
cpe:2.3:h:netgear:jr6150:*:*:*:*:*:*:*, +1 more
- <= 2018
A command injection vulnerability has been identified in the NETGEAR JR6150 AC750 WiFi Router, 802.11ac Dual Band Gigabit, released in 2014. This vulnerability arises from insufficient input validation, allowing users connected to the local WiFi network to execute operating system commands. The router has reached its End-of-Support phase as of 2018, with no further security updates planned. This vulnerability was discovered through firmware emulation in a controlled research environment and has not been verified on production hardware.
Exploitation of this vulnerability allows for unauthorized execution of operating system commands on the affected router.
NETGEAR recommends replacing the JR6150 with a newer model to ensure continued security support and updates.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.