Certain NETGEAR devices are affected by CSRF and authentication bypass. This affects R7300DST before 1.0.0.54, R8300 before 1.0.2.100_1.0.82, R8500 before 1.0.2.100_1.0.82, and WNDR3400v3 before 1.0.1.14.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
21 Nov 2024, 03:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://kb.netgear.com/000045849/Security-Advisory-for-CSRF-and-Authentication-Bypass-on-Some-Routers-PSV-2017-1206 - Vendor Advisory |
Information
Published : 2020-04-20 13:15
Updated : 2024-11-21 03:21
NVD link : CVE-2017-18852
Mitre link : CVE-2017-18852
CVE.ORG link : CVE-2017-18852
JSON object : View
Products Affected
netgear
- r8300_firmware
- r8500_firmware
- r8500
- r8300
- r7300dst
- wndr3400_firmware
- wndr3400
- r7300dst_firmware
CWE
CWE-352
Cross-Site Request Forgery (CSRF)