CVE-2019-20638: Infoleak
Published Apr 15, 2020
·Updated
NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of administrative credentials.
Affected Software
2 affected components
Netgear Mr1100 Firmware<12.06.08.00
Netgear MR1100
Event History
Apr 15, 2020
CVE Published
via MITRE·05:10 PM
Data Sourced
via MITRE·05:10 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2019-20638?
CVE-2019-20638 is considered a medium severity vulnerability due to the risk of administrative credential disclosure.
2
How do I fix CVE-2019-20638?
To fix CVE-2019-20638, users should update their NETGEAR MR1100 devices to firmware version 12.06.08.00 or later.
3
What devices are affected by CVE-2019-20638?
CVE-2019-20638 affects NETGEAR MR1100 devices running firmware versions prior to 12.06.08.00.
4
What kind of information is at risk in CVE-2019-20638?
CVE-2019-20638 exposes administrative credentials, which could allow unauthorized users to gain control over the device.
5
Is there a workaround for CVE-2019-20638?
There is no specific workaround for CVE-2019-20638; upgrading to the patched firmware is the recommended solution.