Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2016-11055


Certain NETGEAR devices are affected by CSRF. This affects CM400 before 2017-01-11, CM600 before 2017-01-11, D1500 before 2017-01-11, D500 before 2017-01-11, DST6501 before 2017-01-11, JNR1010v1 before 2017-01-11, JWNR2000Tv3 before 2017-01-11, JWNR2010v3 before 2017-01-11, PLW1000 before 2017-01-11, PLW1010 before 2017-01-11, WNR500 before 2017-01-11, WNR612v3 before 2017-01-11, N450 before 2017-01-11, and CG3000Dv2 before 2017-01-11.


Published

2020-04-28T16:15:12.497

Last Modified

2024-11-21T02:45:23.633

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:P/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Primary
    CWE-352

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System netgear cm400_firmware < 2017-01-11 Yes
Hardware netgear cm400 - No
Operating System netgear cm600_firmware < 2017-01-11 Yes
Hardware netgear cm600 - No
Operating System netgear d1500_firmware < 1.0.0.20 Yes
Hardware netgear d1500 - No
Operating System netgear d500_firmware < 2017-01-11 Yes
Hardware netgear d500 - No
Operating System netgear dst6501_firmware < 1.0.0.36 Yes
Hardware netgear dst6501 - No
Operating System netgear jnr1010_firmware < 2017-01-11 Yes
Hardware netgear jnr1010 v1 No
Operating System netgear jwnr2000t_firmware < 2017-01-11 Yes
Hardware netgear jwnr2000t v3 No
Operating System netgear jwnr2010_firmware < 2017-01-11 Yes
Hardware netgear jwnr2010 v3 No
Operating System netgear plw1000_firmware < 1.0.0.22 Yes
Hardware netgear plw1000 - No
Operating System netgear plw1010_firmware < 2017-01-11 Yes
Hardware netgear plw1010 - No
Operating System netgear wnr500_firmware < 2017-01-11 Yes
Hardware netgear wnr500 - No
Operating System netgear wnr612_firmware < 2017-01-11 Yes
Hardware netgear wnr612 v3 No
Operating System netgear n450_cg3000d_firmware < 2017-01-11 Yes
Hardware netgear n450_cg3000d v2 No

References