First published: Wed Apr 22 2020(Updated: )
Certain NETGEAR devices are affected by CSRF. This affects R6100 before 1.0.1.12, R7500 before 1.0.0.108, WNDR3700v4 before 1.0.2.86, WNDR4300v1 before 1.0.2.88, WNDR4300v2 before 1.0.0.48, WNDR4500v3 before 1.0.0.48, and WNR2000v5 before 1.0.0.42.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NETGEAR R6100 firmware | <1.0.1.12 | |
NETGEAR R6100 firmware | ||
NETGEAR R7500v2 firmware | <1.0.0.108 | |
NETGEAR R7500v2 firmware | ||
NETGEAR WNDR3700 firmware | <1.0.2.86 | |
NETGEAR WNDR3700v4 | =v4 | |
NETGEAR WNDR4300v2 firmware | <1.0.2.88 | |
NETGEAR wndr4300v2 | =v1 | |
NETGEAR WNDR4300v2 firmware | <1.0.0.48 | |
NETGEAR wndr4300v2 | =v2 | |
NETGEAR WNDR4500 firmware | <1.0.0.48 | |
NETGEAR WNDR4500v3 | =v3 | |
NETGEAR WNR2000v2 | <1.0.0.42 | |
Netgear WNR2000v4 | =v5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18775 is classified as a medium severity vulnerability due to its CSRF nature.
To fix CVE-2017-18775, update your NETGEAR device firmware to the latest version provided by NETGEAR.
CVE-2017-18775 affects NETGEAR devices such as R6100, R7500, WNDR3700v4, WNDR4300, WNDR4500, and WNR2000v5 running specific vulnerable firmware versions.
CVE-2017-18775 is a Cross-Site Request Forgery (CSRF) vulnerability.
CVE-2017-18775 is a concern because it can allow an attacker to perform unauthorized actions on the affected NETGEAR devices if users are tricked into clicking malicious links.