← Back to CVE List
Vulnerability Intelligence Report

CVE-2020-26927

Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, R6220 before 1.1.0.100, R6260 before 1.1.0.66, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, AC2100 before 1.2.0.62, AC2400 before 1.2.0.62, AC2600 before 1.2.0.62, R7450 before 1.2.0.62, and WNR2020 before 1.1.0.62.

No Active Exploit Signals
CVSS Base Score
9.4
CRITICAL
Exploitability:3.9
Impact Score:5.5
EPSS Probability:1.05%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
netgear ac2100_firmware all
netgear ac2100 all
netgear ac2400_firmware all
netgear ac2400 all
netgear ac2600_firmware all
netgear ac2600 all
netgear d6200_firmware all
netgear d6200 all
netgear d7000_firmware all
netgear d7000 all
netgear jr6150_firmware all
netgear jr6150 all
netgear r6020_firmware all
netgear r6020 all
netgear r6050_firmware all
netgear r6050 all
netgear r6080_firmware all
netgear r6080 all
netgear r6120_firmware all
netgear r6120 all
netgear r6220_firmware all
netgear r6220 all
netgear r6260_firmware all
netgear r6260 all
netgear r6700_firmware all
netgear r6700 v2
netgear r6800_firmware all
netgear r6800 all
netgear r6900_firmware all
netgear r6900 v2
netgear r7450_firmware all
netgear r7450 all
netgear wnr2020_firmware all
netgear wnr2020 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.052%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-10-09T00:00:00
Published2020-10-09T06:27:11
Last Updated2024-08-04T16:03:23

LINK COPIED TO CLIPBOARD