CVE-2016-11057
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
28/04/2020
Last modified:
06/05/2020
Description
Certain NETGEAR devices are affected by mishandling of repeated URL calls. This affects JNR1010v2 before 2017-01-06, WNR614 before 2017-01-06, WNR618 before 2017-01-06, JWNR2000v5 before 2017-01-06, WNR2020 before 2017-01-06, JWNR2010v5 before 2017-01-06, WNR1000v4 before 2017-01-06, WNR2020v2 before 2017-01-06, R6220 before 2017-01-06, and WNDR3700v5 before 2017-01-06.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:netgear:jnr1010_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:jnr1010:v2:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:jwnr2000_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:jwnr2000:v5:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:jwnr2010_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:jwnr2010:v5:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:r6220_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:r6220:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:wndr3700_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:wndr3700:v5:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:wnr1000_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:wnr1000:v4:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:wnr2020_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
cpe:2.3:h:netgear:wnr2020:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:wnr2020_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) |
To consult the complete list of CPE names with products and versions, see this page