PT-2020-8740 · NetGear · Wnap320+10

Cyriac

·

Published

2020-04-27

·

Updated

2020-05-04

·

CVE-2018-21096

CVSS v3.1

7.4

High

VectorAV:A/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NETGEAR WAC120 versions prior to 2.1.7 NETGEAR WAC505 versions prior to 5.0.5.4 NETGEAR WAC510 versions prior to 5.0.5.4 NETGEAR WNAP320 versions prior to 3.7.11.4 NETGEAR WNAP210v2 versions prior to 3.7.11.4 NETGEAR WNDAP350 versions prior to 3.7.11.4 NETGEAR WNDAP360 versions prior to 3.7.11.4 NETGEAR WNDAP660 versions prior to 3.7.11.4 NETGEAR WNDAP620 versions prior to 2.1.7 NETGEAR WND930 versions prior to 2.1.5 NETGEAR WN604 versions prior to 3.3.10
Description Certain NETGEAR devices are affected by a CSRF issue.
Recommendations For WAC120 version prior to 2.1.7, update to version 2.1.7 or later. For WAC505 version prior to 5.0.5.4, update to version 5.0.5.4 or later. For WAC510 version prior to 5.0.5.4, update to version 5.0.5.4 or later. For WNAP320 version prior to 3.7.11.4, update to version 3.7.11.4 or later. For WNAP210v2 version prior to 3.7.11.4, update to version 3.7.11.4 or later. For WNDAP350 version prior to 3.7.11.4, update to version 3.7.11.4 or later. For WNDAP360 version prior to 3.7.11.4, update to version 3.7.11.4 or later. For WNDAP660 version prior to 3.7.11.4, update to version 3.7.11.4 or later. For WNDAP620 version prior to 2.1.7, update to version 2.1.7 or later. For WND930 version prior to 2.1.5, update to version 2.1.5 or later. For WN604 version prior to 3.3.10, update to version 3.3.10 or later.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-21096

Affected Products

Wac120
Wac505
Wac510
Wn604
Wnap210V2
Wnap320
Wnd930
Wndap350
Wndap360
Wndap620
Wndap660