CVE-2019-20641

EUVD-2019-11180
NETGEAR RAX40 devices before 1.0.3.64 are affected by lack of access control at the function level.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
8.8 HIGH
ADJACENT_NETWORK
LOW
NONE
CVSS:3.0/AC:L/AV:A/A:H/C:H/I:H/PR:N/S:U/UI:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 44%
Affected Products (NVD)
VendorProductVersion
netgearrax40_firmware
𝑥
< 1.0.3.64
𝑥
= Vulnerable software versions