← Back to CVE List
Vulnerability Intelligence Report

CVE-2018-21096

Certain NETGEAR devices are affected by CSRF. This affects WAC120 before 2.1.7, WAC505 before 5.0.5.4, WAC510 before 5.0.5.4, WNAP320 before 3.7.11.4, WNAP210v2 before 3.7.11.4, WNDAP350 before 3.7.11.4, WNDAP360 before 3.7.11.4, WNDAP660 before 3.7.11.4, WNDAP620 before 2.1.7, WND930 before 2.1.5, and WN604 before 3.3.10.

No Active Exploit Signals
CVSS Base Score
5.2
MEDIUM
Exploitability:1.6
Impact Score:3.6
EPSS Probability:0.29%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
netgear wac120_firmware all
netgear wac120 all
netgear wac505_firmware all
netgear wac505 all
netgear wac510_firmware all
netgear wac510 all
netgear wnap320_firmware all
netgear wnap320 all
netgear wnap210_firmware all
netgear wnap210 v2
netgear wndap350_firmware all
netgear wndap350 all
netgear wndap360_firmware all
netgear wndap360 all
netgear wndap660_firmware all
netgear wndap660 all
netgear wndap620_firmware all
netgear wndap620 all
netgear wnd930_firmware all
netgear wnd930 all
netgear wn604_firmware all
netgear wn604 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.293%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-04-20T00:00:00
Published2020-04-27T15:56:14
Last Updated2024-08-05T12:19:27

LINK COPIED TO CLIPBOARD