CVE-2018-21137: Critical severity netgear d3600 firmware vulnerability
Published Apr 23, 2020
·Updated
Certain NETGEAR devices are affected by a hardcoded password. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76.
Affected Software
4 affected components
Netgear D3600 Firmware<1.0.0.76
Netgear D3600
Netgear D6000 Firmware<1.0.0.76
Netgear D6000
Event History
Apr 23, 2020
CVE Published
via MITRE·08:05 PM
Data Sourced
via MITRE·08:05 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for the hardcoded password in certain NETGEAR devices?
The vulnerability ID for the hardcoded password in certain NETGEAR devices is CVE-2018-21137.
2
Which NETGEAR devices are affected by the hardcoded password vulnerability?
The NETGEAR devices affected by the hardcoded password vulnerability are D3600 before 1.0.0.76 and D6000 before 1.0.0.76.
3
What is the severity rating of CVE-2018-21137?
The severity rating of CVE-2018-21137 is 9.8 (Critical).
4
How can I fix the hardcoded password vulnerability in my NETGEAR device?
To fix the hardcoded password vulnerability, update your NETGEAR D3600 or D6000 firmware to version 1.0.0.76 or above.
5
Where can I find more information about the hardcoded password vulnerability in NETGEAR devices?
You can find more information about the hardcoded password vulnerability in NETGEAR devices in the security advisory at https://kb.netgear.com/000060223/Security-Advisory-for-Hardcoded-Password-on-Some-Modem-Routers-PSV-2018-0099.