PT-2020-7986 · NetGear · Wnr618+9
Published
2020-04-28
·
Updated
2020-05-06
·
CVE-2016-11057
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
JNR1010v2 versions prior to 2017-01-06
WNR614 versions prior to 2017-01-06
WNR618 versions prior to 2017-01-06
JWNR2000v5 versions prior to 2017-01-06
WNR2020 versions prior to 2017-01-06
JWNR2010v5 versions prior to 2017-01-06
WNR1000v4 versions prior to 2017-01-06
WNR2020v2 versions prior to 2017-01-06
R6220 versions prior to 2017-01-06
WNDR3700v5 versions prior to 2017-01-06
Description:
Certain NETGEAR devices are affected by mishandling of repeated URL calls.
Recommendations:
For JNR1010v2 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNR614 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNR618 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For JWNR2000v5 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNR2020 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For JWNR2010v5 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNR1000v4 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNR2020v2 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For R6220 versions prior to 2017-01-06, update to a version released after 2017-01-06.
For WNDR3700v5 versions prior to 2017-01-06, update to a version released after 2017-01-06.
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Jnr1010V2
Wnr2000V5
Jwnr2010V5
R6220
Wndr3700V5
Wnr1000V4
Wnr2020
Wnr2020V2
Wnr614
Wnr618