7.5
CWE
200
Advisory Published
Updated

CVE-2016-11059: Infoleak

First published: Tue Apr 28 2020(Updated: )

Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06, DGN2200Bv4 before 2017-01-06, DGND3700v1 before 2017-01-06, DGND3700v2 before 2017-01-06, DGND3700Bv2 before 2017-01-06, JNR1010v1 before 2017-01-06, JNR1010v2 before 2017-01-06, JNR3300 before 2017-01-06, JR6100 before 2017-01-06, JR6150 before 2017-01-06, JWNR2000v5 before 2017-01-06, R2000 before 2017-01-06, R6050 before 2017-01-06, R6100 before 2017-01-06, R6200 before 2017-01-06, R6200v2 before 2017-01-06, R6220 before 2017-01-06, R6250 before 2017-01-06, R6300 before 2017-01-06, R6300v2 before 2017-01-06, R6700 before 2017-01-06, R7000 before 2017-01-06, R7900 before 2017-01-06, R7500 before 2017-01-06, R8000 before 2017-01-06, WGR614v10 before 2017-01-06, WNR1000v2 before 2017-01-06, WNR1000v3 before 2017-01-06, WNR1000v4 before 2017-01-06, WNR2000v3 before 2017-01-06, WNR2000v4 before 2017-01-06, WNR2000v5 before 2017-01-06, WNR2200 before 2017-01-06, WNR2500 before 2017-01-06, WNR3500Lv2 before 2017-01-06, WNDR3400v2 before 2017-01-06, WNDR3400v3 before 2017-01-06, WNDR3700v3 before 2017-01-06, WNDR3700v4 before 2017-01-06, WNDR3700v5 before 2017-01-06, WNDR4300 before 2017-01-06, WNDR4300v2 before 2017-01-06, WNDR4500v1 before 2017-01-06, WNDR4500v2 before 2017-01-06, and WNDR4500v3 before 2017-01-06.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
NETGEAR AC1450 firmware<2017-01-06
NETGEAR AC1450 firmware
NETGEAR C6300<2017-01-06
NETGEAR C6300 firmware
NETGEAR D1500<2017-01-06
NETGEAR D1500 firmware
NETGEAR D3600 firmware<2017-01-06
NETGEAR D3600 firmware
NETGEAR D500<2017-01-06
NETGEAR D500 Firmware
NETGEAR D6000 firmware<2017-01-06
NETGEAR D6000 firmware
NETGEAR D6100 firmware<2017-01-06
NETGEAR D6100 firmware
NETGEAR D6200B firmware<2017-01-06
NETGEAR D6200 firmware
NETGEAR D6200B<2017-01-06
NETGEAR D6200B firmware
NETGEAR D6300B firmware<2017-01-06
NETGEAR D6300 firmware
NETGEAR D6300B firmware<2017-01-06
NETGEAR D6300B firmware
Netgear DGN1000v3 Firmware<2017-01-06
NETGEAR DGN1000 firmware=v3
NETGEAR DGN2200B firmware<2017-01-06
NETGEAR DGN2200M=v1
NETGEAR DGN2200M=v3
NETGEAR DGN2200M=v4
NETGEAR DGND2200B firmware<2017-01-06
NETGEAR DGND2200B firmware=v3
NETGEAR DGND2200B firmware=v4
NETGEAR DGND3700 firmware<2017-01-06
NETGEAR DGND3700 firmware=v1
NETGEAR DGND3700 firmware=v2
NETGEAR DGND3700B firmware<2017-01-06
NETGEAR DGND3700B firmware=v2
NETGEAR JNR1010 firmware<2017-01-06
NETGEAR JNR1010v2=v1
NETGEAR JNR1010v2=v2
NETGEAR JNR3300 Firmware<2017-01-06
NETGEAR JNR3300 Firmware
NETGEAR JR6100<2017-01-06
NETGEAR JR6100 firmware
NETGEAR JR6150 firmware<2017-01-06
NETGEAR JR6150
NETGEAR JWNR2000T firmware<2017-01-06
NETGEAR JWNR2000 firmware=v5
NETGEAR R2000 firmware<2017-01-06
NETGEAR R2000 firmware
NETGEAR R6050 firmware<2017-01-06
NETGEAR R6050 firmware
NETGEAR R6100 firmware<2017-01-06
NETGEAR R6100 firmware
NETGEAR R6200 firmware<2017-01-06
Netgear R6200
Netgear R6200=v2
NETGEAR R6220 firmware<2017-01-06
NETGEAR R6220 firmware
netgear R6250 Firmware<2017-01-06
NETGEAR R6250
NETGEAR R6300 firmware<2017-01-06
NETGEAR R6300v2
NETGEAR R6300v2=v2
Netgear R6700 Firmware<2017-01-06
NETGEAR R6700v1 firmware
NETGEAR R7000 firmware<2017-01-06
NETGEAR R7000 firmware
NETGEAR R7500v2 firmware<2017-01-06
NETGEAR R7500v2 firmware
NETGEAR R7900P firmware<2017-01-06
NETGEAR R7900P firmware
NETGEAR R8000 firmware<2017-01-06
NETGEAR R8000 firmware
NETGEAR WGR614 firmware<2017-01-06
Netgear WGR614=v10
NETGEAR WNDR3400<2017-01-06
NETGEAR WNDR3400 firmware=v2
NETGEAR WNDR3400 firmware=v3
NETGEAR WNDR3700 firmware<2017-01-06
NETGEAR WNDR3700v4=v3
NETGEAR WNDR3700v4=v4
NETGEAR WNDR3700v4=v5
NETGEAR WNDR4300v2 firmware<2017-01-06
NETGEAR wndr4300v2
NETGEAR wndr4300v2=v2
NETGEAR WNDR4500 firmware<2017-01-06
NETGEAR WNDR4500v3=v1
NETGEAR WNDR4500v3=v2
NETGEAR WNDR4500v3=v3
NETGEAR WNR1000v3 firmware<2017-01-06
Netgear WNR1000=v2
Netgear WNR1000=v3
Netgear WNR1000=v4
NETGEAR WNR2000v2<2017-01-06
Netgear WNR2000v4=v3
Netgear WNR2000v4=v4
Netgear WNR2000v4=v5
NETGEAR WNR2200 Firmware<2017-01-06
NETGEAR WNR2200 Firmware
NETGEAR WNR2500 Firmware<2017-01-06
NETGEAR WNR2500 Firmware
NETGEAR WNR3500L<2017-01-06
NETGEAR WNR3500L firmware=v2

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2016-11059?

    CVE-2016-11059 is classified as a high-severity vulnerability due to potential password exposure in multiple NETGEAR devices.

  • How do I fix CVE-2016-11059?

    To mitigate CVE-2016-11059, update the firmware of affected NETGEAR devices to the latest version released after January 6, 2017.

  • Which NETGEAR devices are affected by CVE-2016-11059?

    CVE-2016-11059 affects several NETGEAR devices, including the AC1450, C6300, and D series routers, among others.

  • What are the consequences of CVE-2016-11059?

    The consequences of CVE-2016-11059 include the potential exposure of sensitive password information to unauthorized users.

  • What actions should users take regarding CVE-2016-11059?

    Users should immediately check their NETGEAR device firmware versions and apply any available updates to secure against CVE-2016-11059.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203