ID

VAR-202006-1925


TITLE

Unauthorized remote code execution vulnerability in multiple Netgear devices

Trust: 0.6

sources: CNVD: CNVD-2020-34628

DESCRIPTION

NETGEAR is a computer network equipment developer founded in 1996 and headquartered in San Jose, California. Many NETGEAR devices have unauthorized remote code execution vulnerabilities. Attackers can use the vulnerability to execute commands directly.

Trust: 0.6

sources: CNVD: CNVD-2020-34628

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2020-34628

AFFECTED PRODUCTS

vendor:netgearmodel:ac1450 v1.0.0.6 1.0.3-v1.0.0.36 10.0.17scope: - version: -

Trust: 0.6

vendor:netgearmodel:d6220 v1.0.0.16 1.0.16-v1.0.0.52 1.0.52scope: - version: -

Trust: 0.6

vendor:netgearmodel:d6300b v1.0.0.16 1.0.16-v1.0.0.102 1.0.102scope: - version: -

Trust: 0.6

vendor:netgearmodel:d6400 v1.0.0.22 1.0.22-v1.0.0.88 1.0.88scope: - version: -

Trust: 0.6

vendor:netgearmodel:d7000v2 v1.0.0.38 1.0.1-v1.0.0.56 1.0.1scope: - version: -

Trust: 0.6

vendor:netgearmodel:dc112a v1.0.0.24 1.0.60-v1.0.0.44 1.0.60scope: - version: -

Trust: 0.6

vendor:netgearmodel:dgn2200 v1.0.0.36 7.0.36-v1.0.0.58 7.0.57scope: - version: -

Trust: 0.6

vendor:netgearmodel:dgn2200v4 v1.0.0.5 5.0.3-v1.0.0.110 1.0.110scope: - version: -

Trust: 0.6

vendor:netgearmodel:dgn2200m v1.0.0.24 1.0.20na-v1.0.0.37 1.0.21wwscope: - version: -

Trust: 0.6

vendor:netgearmodel:dgnd3700 v1.0.0.12 1.0.12na-v1.0.0.17 1.0.17scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex3700 v1.0.0.22 1.0.17-v1.0.0.78 1.0.51scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex3800 v1.0.0.26 1.0.19-v1.0.0.78 1.0.51scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex3920 v1.0.0.26 1.0.19-v1.0.0.78 1.0.51scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6000 v1.0.0.10 1.0.6-v1.0.0.38 1.0.22scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6100 v1.0.0.22 1.0.51-v1.0.2.24 1.1.134scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6120 v1.0.0.4 1.0.2-v1.0.0.48 1.0.30scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6130 v1.0.0.12 1.0.7-v1.0.0.30 1.0.17scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6150 v1.0.0.14 1.0.54-v1.0.0.42 1.0.73scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6200 v1.0.0.38 1.1.52-v1.0.3.90 1.1.125scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex6920 v1.0.0.4 1.0.2-v1.0.0.40 1.0.25scope: - version: -

Trust: 0.6

vendor:netgearmodel:ex7000 v1.0.0.30 1.0.72-v1.0.1.84 1.0.148scope: - version: -

Trust: 0.6

vendor:netgearmodel:lg2200d v1.0.0.57 1.0.40scope: - version: -

Trust: 0.6

vendor:netgearmodel:mbm621scope:eqversion:v1.1.3

Trust: 0.6

vendor:netgearmodel:mbr624gu v6.00.22.12-v6.01.30.64wwscope: - version: -

Trust: 0.6

vendor:netgearmodel:mbr1200scope:eqversion:v1.2.2.53

Trust: 0.6

vendor:netgearmodel:mbr1515scope:eqversion:v1.2.2.68

Trust: 0.6

vendor:netgearmodel:mbr1516 v1.2.2.84bmscope: - version: -

Trust: 0.6

vendor:netgearmodel:mbrn3000 v1.0.0.43na-v1.0.0.74 2.0.12wwscope: - version: -

Trust: 0.6

vendor:netgearmodel:mvbr1210c v1.2.0.35bmscope: - version: -

Trust: 0.6

vendor:netgearmodel:r4500 v1.0.0.4 1.0.3scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6200 v1.0.0.18 1.0.18-v1.0.1.58 1.0.44scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6200v2 v1.0.1.14 1.0.14-v1.0.3.12 10.1.11scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6250 v1.0.0.62 1.0.62-v1.0.4.38 10.1.30scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6300 v1.0.0.68 1.0.16-v1.0.2.80 1.0.59scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6300v2 v1.0.1.72 1.0.21-v1.0.4.36 10.0.93scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6400 v1.0.0.14 1.0.8-v1.0.1.52 1.0.36scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6400v2 v1.0.2.14 1.0.7-v1.0.4.84 10.0.58scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6700 v1.0.0.2 1.0.1-v1.0.2.8 10.0.53scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6700v3 v1.0.2.52 1.0.39-v1.0.4.84 10.0.58scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6900 v1.0.0.2 1.0.2-v1.0.2.8 10.0.38scope: - version: -

Trust: 0.6

vendor:netgearmodel:r6900p v1.0.0.46 1.0.30-v1.3.1.64 10.1.36scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7000 v1.0.0.96 1.0.15-v1.0.11.100 10.2.100scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7000p v1.0.0.44 1.0.27-v1.3.1.64 10.1.36scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7100lg v1.0.0.24 1.0.6-v1.0.0.52 1.0.6scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7300 v1.0.0.26 1.0.6-v1.0.0.74 1.0.29scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7850 v1.0.4.42 10.0.1-v1.0.5.48 10.0.4scope: - version: -

Trust: 0.6

vendor:netgearmodel:r7900 v1.0.0.2 10.0.1-v1.0.4.22 10.0.44scope: - version: -

Trust: 0.6

vendor:netgearmodel:r8300 v1.0.2.48 1.0.52-v1.0.2.130 1.0.99scope: - version: -

Trust: 0.6

vendor:netgearmodel:r8500 v1.0.0.28 1.0.15-v1.0.2.130 1.0.99scope: - version: -

Trust: 0.6

vendor:netgearmodel:wgr614v8 v1.1.20 7.0.37na-v1.2.10 21.0.52scope: - version: -

Trust: 0.6

vendor:netgearmodel:wgr614v9 v1.0.9 1.0.1na-v1.2.32 43.0.46scope: - version: -

Trust: 0.6

vendor:netgearmodel:wgr614v10 v1.0.2.18 47.0.52na-v1.0.2.66 60.0.90scope: - version: -

Trust: 0.6

vendor:netgearmodel:wgt624v4 v2.0.6 2.0.6na-v2.0.13 2.0.15nascope: - version: -

Trust: 0.6

vendor:netgearmodel:wn2500rpv2 v1.0.0.24 1.0.53-v1.0.0.30 1.0.58scope: - version: -

Trust: 0.6

vendor:netgearmodel:wn2500rpv2 v1.0.0.30 1.0.41-v1.0.1.54 1.0.68scope: - version: -

Trust: 0.6

vendor:netgearmodel:wn3000rp v1.0.0.12 1.0.12-v1.0.2.64 1.1.86scope: - version: -

Trust: 0.6

vendor:netgearmodel:wn3100rpv2 v1.0.0.6 1.0.12-v1.0.0.20 1.0.22scope: - version: -

Trust: 0.6

vendor:netgearmodel:wn3500rp v1.0.0.12 1.0.49-v1.0.0.22 1.0.62scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnce3001 v1.0.0.38-v1.0.0.50 1.0.35scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3300v2 v1.0.0.26 11.0.26nascope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3400 v1.0.0.34 15.0.42-v1.0.0.52 20.0.60scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3400v2 v1.0.0.54 1.0.82scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3400v3 v1.0.0.20 1.0.28-v1.0.1.24 1.0.67scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3700v3 v1.0.0.18 1.0.14-v1.0.0.42 1.0.33scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr4000 v1.0.0.66 8.0.55-v1.0.2.10 9.1.89scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr4500 v1.0.0.40 1.0.10-v1.0.1.46 1.0.76scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr4500v2 v1.0.0.26 1.0.16-v1.0.0.72 1.0.45scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr834bv2 v1.0.32 1.0.32na-v2.1.13 2.1.13scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr1000v3 v1.0.2.4 39.0.39-v1.0.2.72 60.0.96scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr2000v2 v1.0.0.34 29.0.45na-v1.2.0.8 36.0.60scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr3500 v1.0.10 1.0.10na-v1.0.36 8.0.36nascope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr3500v2 v1.0.0.64 11.0.51na-v1.2.2.28 25.0.85scope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr3500l v1.0.0.86 13.0.75na-v1.2.2.48 35.0.55nascope: - version: -

Trust: 0.6

vendor:netgearmodel:wnr3500lv2 v1.0.0.10-v1.2.0.56 50.0.96scope: - version: -

Trust: 0.6

vendor:netgearmodel:xr300 v1.0.1.4 10.1.4-v1.0.3.38 10.3.30scope: - version: -

Trust: 0.6

vendor:netgearmodel:r8000 v1.0.0.46 1.0.17-v1.0.4.46 10.1.63scope: - version: -

Trust: 0.6

vendor:netgearmodel:rs400 v1.5.0.34 10.0.33scope: - version: -

Trust: 0.6

vendor:netgearmodel:wndr3300 v1.0.14na-v1.0.45 1.0.45scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2020-34628

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2020-34628
value: HIGH

Trust: 0.6

CNVD: CNVD-2020-34628
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2020-34628

EXTERNAL IDS

db:SEEBUGid:SSVID-98253

Trust: 0.6

db:CNVDid:CNVD-2020-34628

Trust: 0.6

sources: CNVD: CNVD-2020-34628

REFERENCES

url:https://github.com/grimm-co/notquite0dayfriday/tree/master/2020.06.15-netgear

Trust: 0.6

url:https://www.seebug.org/vuldb/ssvid-98253

Trust: 0.6

url:https://www.zoomeye.org/searchresult?q=service%3a%22http%22service%3a%

Trust: 0.6

sources: CNVD: CNVD-2020-34628

SOURCES

db:CNVDid:CNVD-2020-34628

LAST UPDATE DATE

2022-05-17T02:01:00.901000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2020-34628date:2020-06-24T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2020-34628date:2020-06-24T00:00:00