CVE-2017-18862

Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11, JGS524Ev2 before 2017-05-11, JGS524PE before 2017-05-11, GS105Ev2 before 2017-05-11, GS105PE before 2017-05-11, GS108Ev3 before 2017-05-11, GS108PEv3 before 2017-05-11, GS116Ev2 before 2017-05-11, GSS108E before 2017-05-11, GSS116E before 2017-05-11, XS708Ev2 before 2017-05-11, and XS716E before 2017-05-11.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 29%
VendorProductVersion
netgearjgs516pe_firmware
𝑥
< 2017-05-11
netgearjgs524e_firmware
𝑥
< 2017-05-11
netgearjgs524pe_firmware
𝑥
< 2017-05-11
netgeargs105e_firmware
𝑥
< 2017-05-11
netgeargs105pe_firmware
𝑥
< 2017-05-11
netgeargs108e_firmware
𝑥
< 2017-05-11
netgeargs108pe_firmware
𝑥
< 2017-05-11
netgeargs116e_firmware
𝑥
< 2017-05-11
netgeargss108e_firmware
𝑥
< 2017-05-11
netgeargss116e_firmware
𝑥
< 2017-05-11
netgearxs708e_firmware
𝑥
< 2017-05-11
netgearxs716e_firmware
𝑥
< 2017-05-11
𝑥
= Vulnerable software versions