Netgear R6850 router firmware version V1.1.0.88 suffers from a command injection vulnerability in the ping_test functionality. An unauthenticated attacker can inject arbitrary system commands through the c4_IPAddr parameter, resulting in remote code execution as root.
id: CVE-2024-30568
info:
name: Netgear R6850 V1.1.0.88 - Command Injection
author: ritikchaddha
...