Loading
ping.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the ping_IPAddr field of an HTTP POST request.
Use CWE-78, Netgear vendor hub and Dgn2200 Firmware product page to widen CVE-2017-6077 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-38516, CVE-2024-57046 and CVE-2020-35785 for nearby disclosures in the same product family.