CVE-2017-18862
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
28/04/2020
Last modified:
05/05/2020
Description
Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11, JGS524Ev2 before 2017-05-11, JGS524PE before 2017-05-11, GS105Ev2 before 2017-05-11, GS105PE before 2017-05-11, GS108Ev3 before 2017-05-11, GS108PEv3 before 2017-05-11, GS116Ev2 before 2017-05-11, GSS108E before 2017-05-11, GSS116E before 2017-05-11, XS708Ev2 before 2017-05-11, and XS716E before 2017-05-11.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Base Score 2.0
3.30
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:netgear:jgs516pe_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:jgs516pe:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:jgs524e_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:jgs524e:v2:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:jgs524pe_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:jgs524pe:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:gs105e_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:gs105e:v2:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:gs105pe_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:gs105pe:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:gs108e_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:gs108e:v3:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:gs108pe_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) | |
cpe:2.3:h:netgear:gs108pe:v3:*:*:*:*:*:*:* | ||
cpe:2.3:o:netgear:gs116e_firmware:*:*:*:*:*:*:*:* | 2017-05-11 (excluding) |
To consult the complete list of CPE names with products and versions, see this page