CVE-2017-18789: Infoleak
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects R6250 before V1.0.4.8, R6400 before V1.0.1.22, R6400v2 before V1.0.2.32, R7100LG before V1.0.0.32, R7300 before V1.0.0.52, R8300 before V1.0.2.94, R8500 before V1.0.2.100, D6220 before V1.0.0.28, D6400 before V1.0.0.60, and D8500 before V1.0.3.29.
Affected Software
Event History
Frequently Asked Questions
Which NETGEAR devices are affected by CVE-2017-18789?
R6250 before V1.0.4.8, R6400 before V1.0.1.22, R6400v2 before V1.0.2.32, R7100LG before V1.0.0.32, R7300 before V1.0.0.52, R8300 before V1.0.2.94, R8500 before V1.0.2.100, D6220 before V1.0.0.28, D6400 before V1.0.0.60
What is the severity of CVE-2017-18789?
The severity of CVE-2017-18789 is medium with a severity value of 5.5.
How can I fix CVE-2017-18789?
The best way to fix CVE-2017-18789 is to update the firmware on your affected NETGEAR device to the latest version provided by the manufacturer.
Where can I find more information about CVE-2017-18789?
You can find more information about CVE-2017-18789 on the official NETGEAR Security Advisory page: https://kb.netgear.com/000049373/Security-Advisory-for-Sensitive-Information-Disclosure-Vulnerability-on-Some-Routers-and-Some-DSL-Modem-Routers-PSV-2017-0426
What is the Common Weakness Enumeration (CWE) identifier for CVE-2017-18789?
The Common Weakness Enumeration (CWE) identifier for CVE-2017-18789 is 200.