CVE-2018-21136: Infoleak
Published Apr 23, 2020
·Updated
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76.
Affected Software
4 affected components
Netgear D3600 Firmware<1.0.0.76
Netgear D3600
Netgear D6000 Firmware<1.0.0.76
Netgear D6000
Event History
Apr 23, 2020
CVE Published
via MITRE·08:04 PM
Data Sourced
via MITRE·08:04 PM
DescriptionSeverity
Frequently Asked Questions
1
Which NETGEAR devices are affected by CVE-2018-21136?
The D3600 before 1.0.0.76 and D6000 before 1.0.0.76 firmware versions are affected.
2
What is the severity of CVE-2018-21136?
The severity of CVE-2018-21136 is medium with a CVSS score of 4.6.
3
How can I fix CVE-2018-21136?
Update the firmware of the affected NETGEAR devices to version 1.0.0.76 or later.
4
Where can I find more information about CVE-2018-21136?
For more information about CVE-2018-21136, you can refer to the following link: [Netgear Security Advisory PSV-2018-0100](https://kb.netgear.com/000060224/Security-Advisory-for-Sensitive-Information-Disclosure-on-Some-Modem-Routers-PSV-2018-0100).
5
What is the common weakness enumeration (CWE) ID associated with CVE-2018-21136?
The CWE ID associated with CVE-2018-21136 is CWE-200.