CVE-2017-18755
Summary
| CVE | CVE-2017-18755 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-22 17:15:00 UTC |
| Updated | 2020-04-24 20:16:00 UTC |
| Description | Certain NETGEAR devices are affected by CSRF. This affects R6300v2 before 1.0.4.8, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000P before 1.0.0.86, R6900P before 1.0.0.56, R7300 before 1.0.0.54, R8300 before 1.0.2.106, R8500 before 1.0.2.106, DGN2200v4 before 1.0.0.86, DGND2200Bv4 before 1.0.0.86, R6050 before 1.0.0.86, JR6150 before 1.0.1.10, R6220 before 1.1.0.50, and WNDR3700v5 before V1.1.0.48. |
Risk And Classification
Problem Types: CWE-352
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Dgn2200 | v4 | All | All | All |
| Hardware | Netgear | Dgn2200 | v4 | All | All | All |
| Operating System | Netgear | Dgn2200 Firmware | All | All | All | All |
| Operating System | Netgear | Dgn2200 Firmware | All | All | All | All |
| Hardware | Netgear | Dgnd2200b | v4 | All | All | All |
| Hardware | Netgear | Dgnd2200b | v4 | All | All | All |
| Operating System | Netgear | Dgnd2200b Firmware | All | All | All | All |
| Operating System | Netgear | Dgnd2200b Firmware | All | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Hardware | Netgear | Jr6150 | - | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Operating System | Netgear | Jr6150 Firmware | All | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Hardware | Netgear | R6050 | - | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Operating System | Netgear | R6050 Firmware | All | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Hardware | Netgear | R6220 | - | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Operating System | Netgear | R6220 Firmware | All | All | All | All |
| Hardware | Netgear | R6300 | v2 | All | All | All |
| Hardware | Netgear | R6300 | v2 | All | All | All |
| Operating System | Netgear | R6300 Firmware | All | All | All | All |
| Operating System | Netgear | R6300 Firmware | All | All | All | All |
| Hardware | Netgear | R6400 | v2 | All | All | All |
| Hardware | Netgear | R6400 | v2 | All | All | All |
| Operating System | Netgear | R6400 Firmware | All | All | All | All |
| Operating System | Netgear | R6400 Firmware | All | All | All | All |
| Hardware | Netgear | R6700 | - | All | All | All |
| Hardware | Netgear | R6700 | - | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Operating System | Netgear | R6700 Firmware | All | All | All | All |
| Hardware | Netgear | R6900 | - | All | All | All |
| Hardware | Netgear | R6900 | - | All | All | All |
| Hardware | Netgear | R6900p | - | All | All | All |
| Hardware | Netgear | R6900p | - | All | All | All |
| Operating System | Netgear | R6900p Firmware | All | All | All | All |
| Operating System | Netgear | R6900p Firmware | All | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Operating System | Netgear | R6900 Firmware | All | All | All | All |
| Hardware | Netgear | R7000p | - | All | All | All |
| Hardware | Netgear | R7000p | - | All | All | All |
| Operating System | Netgear | R7000p Firmware | All | All | All | All |
| Operating System | Netgear | R7000p Firmware | All | All | All | All |
| Hardware | Netgear | R7300 | - | All | All | All |
| Hardware | Netgear | R7300 | - | All | All | All |
| Operating System | Netgear | R7300 Firmware | All | All | All | All |
| Operating System | Netgear | R7300 Firmware | All | All | All | All |
| Hardware | Netgear | R8300 | - | All | All | All |
| Hardware | Netgear | R8300 | - | All | All | All |
| Operating System | Netgear | R8300 Firmware | All | All | All | All |
| Operating System | Netgear | R8300 Firmware | All | All | All | All |
| Hardware | Netgear | R8500 | - | All | All | All |
| Hardware | Netgear | R8500 | - | All | All | All |
| Operating System | Netgear | R8500 Firmware | All | All | All | All |
| Operating System | Netgear | R8500 Firmware | All | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Hardware | Netgear | Wndr3700 | v5 | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
| Operating System | Netgear | Wndr3700 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Cross Site Request Forgery on Routers and Modem Routers, PSV-2017-0333 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.