CVE-2024-12847

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 10, 2025
CWE ID 288

Summary

CVE-2024-12847 is a critical vulnerability affecting NETGEAR DGN1000 routers before version 1.1.00.48. An attacker can exploit this authentication bypass issue to execute arbitrary operating system commands as root without requiring any login credentials. The vulnerability has been exploited in the wild since at least 2017, posing a serious risk to affected users. To mitigate this threat, NETGEAR urges users to update their routers as soon as possible to the latest firmware version to prevent potential unauthorized control and compromise.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share