CVE-2017-18768

Certain NETGEAR devices are affected by CSRF. This affects EX6100 before 1.0.2.16_1.1.130, EX6100v2 before 1.0.1.70, EX6150v2 before 1.0.1.54, EX6200v2 before 1.0.1.50, EX6400 before 1.0.1.60, EX7300 before 1.0.1.60, and WN3000RPv3 before 1.0.2.44.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
mitreCNA
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AC:L/AV:N/A:H/C:H/I:H/PR:N/S:U/UI:R
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
VendorProductVersion
netgearex6100_firmware
𝑥
< 1.0.2.16_1.1.130
netgearex6100_firmware
𝑥
< 1.0.1.70
netgearex6150_firmware
𝑥
< 1.0.1.54
netgearex6200_firmware
𝑥
< 1.0.1.50
netgearex6400_firmware
𝑥
< 1.0.1.60
netgearex7300_firmware
𝑥
< 1.0.1.60
netgearwn3000rp_firmware
𝑥
< 1.0.2.44
𝑥
= Vulnerable software versions