CVE-2020-26919: Netgear JGS516PE Devices Missing Function Level Access Control Vulnerability
NETGEAR JGS516PE devices before 2.6.0.43 are affected by lack of access control at the function level.
Other sources
Netgear JGS516PE devices contain a missing function level access control vulnerability.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-26919?
CVE-2020-26919 is a vulnerability that affects Netgear JGS516PE devices before version 2.6.0.43.
What is the severity of CVE-2020-26919?
The severity of CVE-2020-26919 is critical with a CVSS score of 9.8.
How does CVE-2020-26919 affect Netgear JGS516PE devices?
CVE-2020-26919 affects Netgear JGS516PE devices by allowing unauthorized access at the function level.
How can I fix CVE-2020-26919?
To fix CVE-2020-26919, it is recommended to update the firmware of Netgear JGS516PE devices to version 2.6.0.43 or later.
Where can I find more information about CVE-2020-26919?
You can find more information about CVE-2020-26919 in the security advisory provided by NETGEAR: [https://kb.netgear.com/000062334/Security-Advisory-for-Missing-Function-Level-Access-Control-on-JGS516PE-PSV-2020-0377]