CVE-2016-11059
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
28/04/2020
Last modified:
06/05/2020
Description
Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06, DGN2200Bv4 before 2017-01-06, DGND3700v1 before 2017-01-06, DGND3700v2 before 2017-01-06, DGND3700Bv2 before 2017-01-06, JNR1010v1 before 2017-01-06, JNR1010v2 before 2017-01-06, JNR3300 before 2017-01-06, JR6100 before 2017-01-06, JR6150 before 2017-01-06, JWNR2000v5 before 2017-01-06, R2000 before 2017-01-06, R6050 before 2017-01-06, R6100 before 2017-01-06, R6200 before 2017-01-06, R6200v2 before 2017-01-06, R6220 before 2017-01-06, R6250 before 2017-01-06, R6300 before 2017-01-06, R6300v2 before 2017-01-06, R6700 before 2017-01-06, R7000 before 2017-01-06, R7900 before 2017-01-06, R7500 before 2017-01-06, R8000 before 2017-01-06, WGR614v10 before 2017-01-06, WNR1000v2 before 2017-01-06, WNR1000v3 before 2017-01-06, WNR1000v4 before 2017-01-06, WNR2000v3 before 2017-01-06, WNR2000v4 before 2017-01-06, WNR2000v5 before 2017-01-06, WNR2200 before 2017-01-06, WNR2500 before 2017-01-06, WNR3500Lv2 before 2017-01-06, WNDR3400v2 before 2017-01-06, WNDR3400v3 before 2017-01-06, WNDR3700v3 before 2017-01-06, WNDR3700v4 before 2017-01-06, WNDR3700v5 before 2017-01-06, WNDR4300 before 2017-01-06, WNDR4300v2 before 2017-01-06, WNDR4500v1 before 2017-01-06, WNDR4500v2 before 2017-01-06, and WNDR4500v3 before 2017-01-06.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:netgear:ac1450_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:ac1450:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:c6300_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:c6300:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d1500_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:d1500:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d3600_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:d3600:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d500_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:d500:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d6000_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:d6000:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d6100_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) | |
| cpe:2.3:h:netgear:d6100:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netgear:d6200_firmware:*:*:*:*:*:*:*:* | 2017-01-06 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



