CVE-2017-18768

EUVD-2017-9859
Certain NETGEAR devices are affected by CSRF. This affects EX6100 before 1.0.2.16_1.1.130, EX6100v2 before 1.0.1.70, EX6150v2 before 1.0.1.54, EX6200v2 before 1.0.1.50, EX6400 before 1.0.1.60, EX7300 before 1.0.1.60, and WN3000RPv3 before 1.0.2.44.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
mitreCNA
8.8 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AC:L/AV:N/A:H/C:H/I:H/PR:N/S:U/UI:R
Base Score
CVSS 3.x
EPSS Score
Percentile: 49%
Affected Products (NVD)
VendorProductVersion
netgearex6100_firmware
𝑥
< 1.0.2.16_1.1.130
netgearex6100_firmware
𝑥
< 1.0.1.70
netgearex6150_firmware
𝑥
< 1.0.1.54
netgearex6200_firmware
𝑥
< 1.0.1.50
netgearex6400_firmware
𝑥
< 1.0.1.60
netgearex7300_firmware
𝑥
< 1.0.1.60
netgearwn3000rp_firmware
𝑥
< 1.0.2.44
𝑥
= Vulnerable software versions