CVE-2017-18862 Information

Description

Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11 JGS524Ev2 before 2017-05-11 JGS524PE before 2017-05-11 GS105Ev2 before 2017-05-11 GS105PE before 2017-05-11 GS108Ev3 before 2017-05-11 GS108PEv3 before 2017-05-11 GS116Ev2 before 2017-05-11 GSS108E before 2017-05-11 GSS116E before 2017-05-11 XS708Ev2 before 2017-05-11 and XS716E before 2017-05-11.

CVSS Vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Reference

https://kb.netgear.com/000037849/Security-Advisory-for-Authentication-Bypass-on-ProSAFE-Web-Managed-Switches-PSV-2015-0043

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

NONE

Base Score

NONE

Base Severity

6.5

Share on: