CVE-2020-35778: CSRF
Published Dec 29, 2020
·Updated
Certain NETGEAR devices are affected by CSRF. This affects GS716Tv3 before 6.3.1.36 and GS724Tv4 before 6.3.1.36.
Affected Software
4 affected components
Netgear Gs716t Firmware<6.3.1.36
Netgear GS716T=v3
Netgear Gs724t Firmware<6.3.1.36
Netgear GS724T=v4
Event History
Dec 29, 2020
CVE Published
via MITRE·11:41 PM
Data Sourced
via MITRE·11:41 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2020-35778?
The severity of CVE-2020-35778 is high.
2
Which devices are affected by CVE-2020-35778?
GS716Tv3 before 6.3.1.36 and GS724Tv4 before 6.3.1.36 are affected by CVE-2020-35778.
3
How can I fix CVE-2020-35778?
Update your NETGEAR devices to version 6.3.1.36 or later.
4
What is CSRF?
CSRF stands for Cross-Site Request Forgery, which is an attack that tricks the victim into executing unwanted actions on a web application in which they are authenticated.
5
Where can I find more information about CVE-2020-35778?
You can find more information about CVE-2020-35778 in the Netgear security advisory: https://kb.netgear.com/000062721/Security-Advisory-for-Cross-Site-Request-Forgery-on-Some-Smart-Managed-Pro-Switches-PSV-2020-0368