Netgear s Advised by CERT to Stop Using These Routers Due to Critical Security Flaw 3r5u3v

Netgear s Advised by CERT to Stop Using These Routers Due to Critical Security Flaw
Highlights
  • Netgear routers R7000, R6400, and R8000 affected
  • Flaw is trivial unless is tricked into accessing a URL
  • Vulnerability is known as command injection
ment

The United States Computer Emergency Readiness Team (US-CERT) issued a warning stating that two of Netgear's routers - R7000 and R6400 - are potentially vulnerable due to a critical security flaw. CERT has warned s of these routers to discontinue their use until the flaw is fixed. 235un

According to CERT's statement, the flaw is not dangerous unless the router owner is tricked into accessing a URL, which has been released publicly. An attacker can hide an exploit in a shortened URL, increasing the chance of tricking a into opening the link.

On opening the link, the Netgear routers process the URL and the command is executed by the router. This vulnerability is known as command injection. An attacker can inject any command which is then executed by the system.

"The CERT/CC is currently unaware of a practical solution to this problem and recommends the following workaround," CERT said.

While the flaw has so far only been found in two of Netgear's routers running current or older firmware versions, CERT says that other routers may also be affected. Netgear on Sunday stated that it was aware of the vulnerability and also added R8000 to the list of vulnerable routers.

Router flaws have increasingly been susceptible to attackers. In September, F-Secure researchers discovered a critical vulnerability in some models of Inteno home routers, which, if exploited, could give an attacker complete control over the victim's device and any other devices connected to it.

Earlier Spotify.

Comments

For the latest reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Command Injection
Zen ire Dragon, ire Thrill Launched in India: Price, Specifications, and Features
Facebook Gadgets360 Twitter Share Tweet Snapchat LinkedIn Reddit Comment google-newsGoogle News

ment

Follow Us

ment

© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »