PT-2020-7986 · NetGear · Wnr618+9

Published

2020-04-28

·

Updated

2020-05-06

·

CVE-2016-11057

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: JNR1010v2 versions prior to 2017-01-06 WNR614 versions prior to 2017-01-06 WNR618 versions prior to 2017-01-06 JWNR2000v5 versions prior to 2017-01-06 WNR2020 versions prior to 2017-01-06 JWNR2010v5 versions prior to 2017-01-06 WNR1000v4 versions prior to 2017-01-06 WNR2020v2 versions prior to 2017-01-06 R6220 versions prior to 2017-01-06 WNDR3700v5 versions prior to 2017-01-06
Description: Certain NETGEAR devices are affected by mishandling of repeated URL calls.
Recommendations: For JNR1010v2 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNR614 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNR618 versions prior to 2017-01-06, update to a version released after 2017-01-06. For JWNR2000v5 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNR2020 versions prior to 2017-01-06, update to a version released after 2017-01-06. For JWNR2010v5 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNR1000v4 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNR2020v2 versions prior to 2017-01-06, update to a version released after 2017-01-06. For R6220 versions prior to 2017-01-06, update to a version released after 2017-01-06. For WNDR3700v5 versions prior to 2017-01-06, update to a version released after 2017-01-06.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-11057

Affected Products

Jnr1010V2
Wnr2000V5
Jwnr2010V5
R6220
Wndr3700V5
Wnr1000V4
Wnr2020
Wnr2020V2
Wnr614
Wnr618