CVE-2017-18708: CSRF
Published Apr 24, 2020
·Updated
Certain NETGEAR devices are affected by CSRF. This affects R8300 before 1.0.2.94 and R8500 before 1.0.2.94.
Affected Software
4 affected components
Netgear R8300 Firmware<1.0.2.94
Netgear R8300
Netgear R8500 Firmware<1.0.2.94
Netgear R8500
Event History
Apr 24, 2020
CVE Published
via MITRE·01:59 PM
Data Sourced
via MITRE·01:59 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for this NETGEAR CSRF vulnerability?
The vulnerability ID for this NETGEAR CSRF vulnerability is CVE-2017-18708.
2
Which NETGEAR devices are affected by this CSRF vulnerability?
The NETGEAR devices affected by this CSRF vulnerability are R8300 before 1.0.2.94 and R8500 before 1.0.2.94.
3
What is the severity of CVE-2017-18708?
The severity of CVE-2017-18708 is high (CVSS score of 8.8).
4
How can I fix the CSRF vulnerability in my NETGEAR device?
To fix the CSRF vulnerability in your NETGEAR device, you should update the firmware to version 1.0.2.94 or higher.
5
Where can I find more information about this CSRF vulnerability?
You can find more information about this CSRF vulnerability in the NETGEAR security advisory at the following link: https://kb.netgear.com/000053157/Security-Advisory-for-Cross-Site-Request-Forgery-on-Some-Routers-PSV-2017-0336