CVE-2017-18752: Infoleak
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX6120 before 1.0.0.32, EX6130 before 1.0.0.16, R6300v2 before 1.0.4.12, R6700 before 1.0.1.26, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R7300DST before 1.0.0.52, R7900 before 1.0.1.12, R8000 before 1.0.3.24, and R8500 before 1.0.2.94.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by CVE-2017-18752?
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This includes EX3700 before 1.0.0.64, EX3800 before 1.0.0.64, EX6120 before 1.0.0.32, EX6130 before 1.0.0.16, R6300v2 before 1.0.4.12, R6700 before 1.0.1.26, R6900 before 1.0.1.22, R7000 before 1.0.9.6, R7300DST before 1.0.0.52, R7900 before 1.0.1.12, R8000 before 1.0.3.24, and R8500 before 1.0.2.94.
What is the severity of CVE-2017-18752?
The severity of CVE-2017-18752 is high (CVSS score: 6.5).
How does CVE-2017-18752 affect NETGEAR devices?
CVE-2017-18752 allows an attacker to read arbitrary files on certain NETGEAR devices.
How can I check if my NETGEAR device is vulnerable to CVE-2017-18752?
You can check if your NETGEAR device is vulnerable to CVE-2017-18752 by verifying the firmware version. Refer to the vendor's security advisory for more information.
Where can I find more information about CVE-2017-18752?
You can find more information about CVE-2017-18752 in the vendor's security advisory: https://kb.netgear.com/000051502/Security-Advisory-for-Arbitrary-File-Read-on-Some-Routers-and-Extenders-PSV-2017-0319