CVE-2019-14527

CRITICAL

NETGEAR Nighthawk M1 <12.06.03 - Command Injection

Title source: llm
STIX 2.1

Description

An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via the web interface, after authentication.

Scores

CVSS v3 9.8
EPSS 0.0065
EPSS Percentile 71.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
netgear/mr1100_firmware < 12.06.03
Published Aug 14, 2019
Tracked Since Feb 18, 2026