Lucene search

K
nvd[email protected]NVD:CVE-2016-11055
HistoryApr 28, 2020 - 4:15 p.m.

CVE-2016-11055

2020-04-2816:15:12
CWE-352
web.nvd.nist.gov
2

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

4.7

Confidence

High

EPSS

0.001

Percentile

21.6%

Certain NETGEAR devices are affected by CSRF. This affects CM400 before 2017-01-11, CM600 before 2017-01-11, D1500 before 2017-01-11, D500 before 2017-01-11, DST6501 before 2017-01-11, JNR1010v1 before 2017-01-11, JWNR2000Tv3 before 2017-01-11, JWNR2010v3 before 2017-01-11, PLW1000 before 2017-01-11, PLW1010 before 2017-01-11, WNR500 before 2017-01-11, WNR612v3 before 2017-01-11, N450 before 2017-01-11, and CG3000Dv2 before 2017-01-11.

Affected configurations

Nvd
Node
netgearcm400_firmwareRange<2017-01-11
AND
netgearcm400Match-
Node
netgearcm600_firmwareRange<2017-01-11
AND
netgearcm600Match-
Node
netgeard1500_firmwareRange<1.0.0.20
AND
netgeard1500Match-
Node
netgeard500_firmwareRange<2017-01-11
AND
netgeard500Match-
Node
netgeardst6501_firmwareRange<1.0.0.36
AND
netgeardst6501Match-
Node
netgearjnr1010_firmwareRange<2017-01-11
AND
netgearjnr1010Matchv1
Node
netgearjwnr2000t_firmwareRange<2017-01-11
AND
netgearjwnr2000tMatchv3
Node
netgearjwnr2010_firmwareRange<2017-01-11
AND
netgearjwnr2010Matchv3
Node
netgearplw1000_firmwareRange<1.0.0.22
AND
netgearplw1000Match-
Node
netgearplw1010_firmwareRange<2017-01-11
AND
netgearplw1010Match-
Node
netgearwnr500_firmwareRange<2017-01-11
AND
netgearwnr500Match-
Node
netgearwnr612_firmwareRange<2017-01-11
AND
netgearwnr612Matchv3
Node
netgearn450_cg3000d_firmwareRange<2017-01-11
AND
netgearn450_cg3000dMatchv2
VendorProductVersionCPE
netgearcm400_firmware*cpe:2.3:o:netgear:cm400_firmware:*:*:*:*:*:*:*:*
netgearcm400-cpe:2.3:h:netgear:cm400:-:*:*:*:*:*:*:*
netgearcm600_firmware*cpe:2.3:o:netgear:cm600_firmware:*:*:*:*:*:*:*:*
netgearcm600-cpe:2.3:h:netgear:cm600:-:*:*:*:*:*:*:*
netgeard1500_firmware*cpe:2.3:o:netgear:d1500_firmware:*:*:*:*:*:*:*:*
netgeard1500-cpe:2.3:h:netgear:d1500:-:*:*:*:*:*:*:*
netgeard500_firmware*cpe:2.3:o:netgear:d500_firmware:*:*:*:*:*:*:*:*
netgeard500-cpe:2.3:h:netgear:d500:-:*:*:*:*:*:*:*
netgeardst6501_firmware*cpe:2.3:o:netgear:dst6501_firmware:*:*:*:*:*:*:*:*
netgeardst6501-cpe:2.3:h:netgear:dst6501:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 261

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

4.7

Confidence

High

EPSS

0.001

Percentile

21.6%

Related for NVD:CVE-2016-11055