'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2026-03-25 | |
| Rule Name: | Netgear DGN Router setup.cgi Unauthorized Command Injection Vulnerability (CVE-2024-12847) | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | The AVM1203 IP Camera are widely used in small and medium-sized security systems. The CGI management interface of this device has an input validation defect, allowing attackers to construct malicious requests to remotely execute system commands. The PoC for this vulnerability has been made public, which can lead to the hijacking of the monitoring equipment. | |
| Impact: | An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | https://seclists.org/bugtraq/2013/Jun/8 |
|
| Solutions |
|---|
| Refer to the announcement or patch by the vendor: https://www.netgear.com/support/product/dgn1000/ |