Vulnerability Intelligence Report
CVE-2017-18768
Certain NETGEAR devices are affected by CSRF. This affects EX6100 before 1.0.2.16_1.1.130, EX6100v2 before 1.0.1.70, EX6150v2 before 1.0.1.54, EX6200v2 before 1.0.1.50, EX6400 before 1.0.1.60, EX7300 before 1.0.1.60, and WN3000RPv3 before 1.0.2.44.
No Active Exploit Signals
CVSS Base Score
8.8
HIGH
Exploitability:2.9
Impact Score:5.9
EPSS Probability:0.62%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| netgear | ex6100_firmware | all |
| netgear | ex6100 | v2 |
| netgear | ex6150_firmware | all |
| netgear | ex6150 | v2 |
| netgear | ex6200_firmware | all |
| netgear | ex6200 | v2 |
| netgear | ex6400_firmware | all |
| netgear | ex6400 | all |
| netgear | ex7300_firmware | all |
| netgear | ex7300 | all |
| netgear | wn3000rp_firmware | all |
| netgear | wn3000rp | v3 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
0.620%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2020-04-20T00:00:00 |
| Published | 2020-04-22T15:36:33 |
| Last Updated | 2024-08-05T21:37:44 |
Community Chatter & Buzz