← Back to CVE List
Vulnerability Intelligence Report

CVE-2017-18752

Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX6120 before 1.0.0.32, EX6130 before 1.0.0.16, R6300v2 before 1.0.4.12, R6700 before 1.0.1.26, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R7300DST before 1.0.0.52, R7900 before 1.0.1.12, R8000 before 1.0.3.24, and R8500 before 1.0.2.94.

No Active Exploit Signals
CVSS Base Score
8.8
HIGH
Exploitability:2.9
Impact Score:5.9
EPSS Probability:0.61%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
netgear ex3700_firmware all
netgear ex3700 all
netgear ex3800_firmware all
netgear ex3800 all
netgear ex6120_firmware all
netgear ex6120 all
netgear ex6130_firmware all
netgear ex6130 all
netgear r6300_firmware all
netgear r6300 v2
netgear r6700_firmware all
netgear r6700 all
netgear r6900_firmware all
netgear r6900 all
netgear r7000_firmware all
netgear r7000 all
netgear r7300dst_firmware all
netgear r7300dst all
netgear r7900_firmware all
netgear r7900 all
netgear r8000_firmware all
netgear r8000 all
netgear r8500_firmware all
netgear r8500 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.609%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-04-20T00:00:00
Published2020-04-22T16:15:33
Last Updated2024-08-05T21:37:42

LINK COPIED TO CLIPBOARD