CVE-2020-13245
5.9
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.2 / Impact: 3.6
Source: NVD
Description
Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibly R6120, R7800, R6220, R8000, R6350, R9000, R6400, RAX120, R6400v2, RBR20, R6800, XR300, R6850, XR500, and R7000P.
Affected (14)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6120 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6220 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6350 | All versions |
Configuration D
| Running on/with | Platform Versions |
|---|---|
Netgear R6400 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6400 | Version v2 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6800 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6850 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R7000p | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R7800 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R8000 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear R9000 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax120 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr20 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear Xr300 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| From v1.0.9.6_1.2.19 to v1.0.11.100_10.2.100 |
| Running on/with | Platform Versions |
|---|---|
Netgear Xr500 | All versions |
References (4)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.