Netgear Routers R7000 R6400 R8000 – are vulnerable to arbitrary command injection

netgearrouter_01

 

Verify that your router is affected by going to this URL

http://<Router IP@>/cgi-bin/;uname$IFS-a

If that shows you anything but an error (or an empty page) you’re affected

The following URL terminates the web server process (which facilitates the vulnerability) on your router

http://<Router I@>/cgi-bin/;killall$IFS’httpd‘

Leave a Reply

You must be logged in to post a comment.