First published: Mon Apr 20 2020(Updated: )
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38, R6800 before 1.1.0.38, and D7000 before 1.0.1.50.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear R6700 Firmware | <1.1.0.38 | |
NETGEAR R6700v1 firmware | =v2 | |
NETGEAR R6800 firmware | <1.1.0.38 | |
NETGEAR R6800 firmware | ||
NETGEAR D7000v1 firmware | <1.0.1.50 | |
NETGEAR D7000 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18843 is classified as a medium severity vulnerability due to the risk of unauthorized access to administrative credentials.
To mitigate CVE-2017-18843, update your NETGEAR device firmware to the latest version beyond R6700v2 1.1.0.38, R6800 1.1.0.38, or D7000 1.0.1.50.
CVE-2017-18843 affects the NETGEAR R6700v2, R6800, and D7000 models running specific firmware versions.
CVE-2017-18843 is a credential disclosure vulnerability that enables unauthorized users to access administrative functions.
Yes, the NETGEAR R6700v2 is vulnerable to CVE-2017-18843 if it is running firmware version earlier than 1.1.0.38.