CVE-2016-11058

The NETGEAR genie application before 2.4.34 for Android is affected by mishandling of hard-coded API keys and session IDs.
Configurations

Configuration 1 (hide)

cpe:2.3:a:netgear:genie:*:*:*:*:*:android:*:*

History

21 Nov 2024, 02:45

Type Values Removed Values Added
References () https://kb.netgear.com/30922/NETGEAR-genie-App-for-Android-Hard-coded-API-Key-and-Session-ID-Vulnerability - Vendor Advisory () https://kb.netgear.com/30922/NETGEAR-genie-App-for-Android-Hard-coded-API-Key-and-Session-ID-Vulnerability - Vendor Advisory

Information

Published : 2020-04-28 17:15

Updated : 2024-11-21 02:45


NVD link : CVE-2016-11058

Mitre link : CVE-2016-11058

CVE.ORG link : CVE-2016-11058


JSON object : View

Products Affected

netgear

  • genie
CWE
CWE-613

Insufficient Session Expiration