cvedb.io
CVE-2023-33533
HIGH · CVSS 8.8
EPSS exploitation probability: 0%
Published 2023-06-06T14:15:12.817 · Last modified 2026-06-17T06:01:52.843

Summary

Netgear D6220 with Firmware Version 1.0.0.80, D8500 with Firmware Version 1.0.3.60, R6700 with Firmware Version 1.0.2.26, and R6900 with Firmware Version 1.0.2.26 are vulnerable to Command Injection. If an attacker gains web management privileges, they can inject commands into the post request parameters, gaining shell privileges.

Affected products

netgear — d6220_firmware

Does this affect you?

Add your gear to cvedb and we'll alert you only when netgear ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.