CVE-2017-18862

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
28/04/2020
Last modified:
05/05/2020

Description

Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11, JGS524Ev2 before 2017-05-11, JGS524PE before 2017-05-11, GS105Ev2 before 2017-05-11, GS105PE before 2017-05-11, GS108Ev3 before 2017-05-11, GS108PEv3 before 2017-05-11, GS116Ev2 before 2017-05-11, GSS108E before 2017-05-11, GSS116E before 2017-05-11, XS708Ev2 before 2017-05-11, and XS716E before 2017-05-11.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:jgs516pe_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:jgs516pe:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:jgs524e_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:jgs524e:v2:*:*:*:*:*:*:*
cpe:2.3:o:netgear:jgs524pe_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:jgs524pe:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs105e_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:gs105e:v2:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs105pe_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:gs105pe:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs108e_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:gs108e:v3:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs108pe_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)
cpe:2.3:h:netgear:gs108pe:v3:*:*:*:*:*:*:*
cpe:2.3:o:netgear:gs116e_firmware:*:*:*:*:*:*:*:* 2017-05-11 (excluding)