CVE-2019-20676
Summary
| CVE | CVE-2019-20676 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-04-15 20:15:00 UTC |
| Updated | 2020-04-23 14:00:00 UTC |
| Description | Certain NETGEAR devices are affected by lack of access control at the function level. This affects FS728TLP before 1.0.1.26, GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS108Ev3 before 2.06.08, GS108PEv3 before 2.06.08, GS110EMX before 1.0.1.4, GS116Ev2 before 2.6.0.35, GS408EPP before 1.0.0.15, GS724TPv2 before 1.1.1.29, GS808E before 1.7.0.7, GS810EMX before 1.7.1.1, GS908E before 1.7.0.3, GSS108E before 1.6.0.4, GSS108EPP before 1.0.0.15, GSS116E before 1.6.0.9, JGS516PE before 2.6.0.35, JGS524Ev2 before 2.6.0.35, JGS524PE before 2.6.0.35, XS512EM before 1.0.1.1, XS708Ev2 before 1.6.0.23, XS716E before 1.6.0.23, and XS724EM before 1.0.1.1. |
Risk And Classification
Problem Types: CWE-862
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | Fs728tlp | - | All | All | All |
| Hardware | Netgear | Fs728tlp | - | All | All | All |
| Operating System | Netgear | Fs728tlp Firmware | All | All | All | All |
| Operating System | Netgear | Fs728tlp Firmware | All | All | All | All |
| Hardware | Netgear | Gs105e | v2 | All | All | All |
| Hardware | Netgear | Gs105e | v2 | All | All | All |
| Operating System | Netgear | Gs105e Firmware | All | All | All | All |
| Operating System | Netgear | Gs105e Firmware | All | All | All | All |
| Hardware | Netgear | Gs105pe | - | All | All | All |
| Hardware | Netgear | Gs105pe | - | All | All | All |
| Operating System | Netgear | Gs105pe Firmware | All | All | All | All |
| Operating System | Netgear | Gs105pe Firmware | All | All | All | All |
| Hardware | Netgear | Gs108e | v3 | All | All | All |
| Hardware | Netgear | Gs108e | v3 | All | All | All |
| Operating System | Netgear | Gs108e Firmware | All | All | All | All |
| Operating System | Netgear | Gs108e Firmware | All | All | All | All |
| Hardware | Netgear | Gs108pe | v3 | All | All | All |
| Hardware | Netgear | Gs108pe | v3 | All | All | All |
| Operating System | Netgear | Gs108pe Firmware | All | All | All | All |
| Operating System | Netgear | Gs108pe Firmware | All | All | All | All |
| Hardware | Netgear | Gs110emx | - | All | All | All |
| Hardware | Netgear | Gs110emx | - | All | All | All |
| Operating System | Netgear | Gs110emx Firmware | All | All | All | All |
| Operating System | Netgear | Gs110emx Firmware | All | All | All | All |
| Hardware | Netgear | Gs116e | v2 | All | All | All |
| Hardware | Netgear | Gs116e | v2 | All | All | All |
| Operating System | Netgear | Gs116e Firmware | All | All | All | All |
| Operating System | Netgear | Gs116e Firmware | All | All | All | All |
| Hardware | Netgear | Gs408epp | - | All | All | All |
| Hardware | Netgear | Gs408epp | - | All | All | All |
| Operating System | Netgear | Gs408epp Firmware | All | All | All | All |
| Operating System | Netgear | Gs408epp Firmware | All | All | All | All |
| Hardware | Netgear | Gs724tp | v2 | All | All | All |
| Hardware | Netgear | Gs724tp | v2 | All | All | All |
| Operating System | Netgear | Gs724tp Firmware | All | All | All | All |
| Operating System | Netgear | Gs724tp Firmware | All | All | All | All |
| Hardware | Netgear | Gs808e | - | All | All | All |
| Hardware | Netgear | Gs808e | - | All | All | All |
| Operating System | Netgear | Gs808e Firmware | All | All | All | All |
| Operating System | Netgear | Gs808e Firmware | All | All | All | All |
| Hardware | Netgear | Gs810emx | - | All | All | All |
| Hardware | Netgear | Gs810emx | - | All | All | All |
| Operating System | Netgear | Gs810emx Firmware | All | All | All | All |
| Operating System | Netgear | Gs810emx Firmware | All | All | All | All |
| Hardware | Netgear | Gs908e | - | All | All | All |
| Hardware | Netgear | Gs908e | - | All | All | All |
| Operating System | Netgear | Gs908e Firmware | All | All | All | All |
| Operating System | Netgear | Gs908e Firmware | All | All | All | All |
| Hardware | Netgear | Gss108e | - | All | All | All |
| Hardware | Netgear | Gss108e | - | All | All | All |
| Hardware | Netgear | Gss108epp | - | All | All | All |
| Hardware | Netgear | Gss108epp | - | All | All | All |
| Operating System | Netgear | Gss108epp Firmware | All | All | All | All |
| Operating System | Netgear | Gss108epp Firmware | All | All | All | All |
| Operating System | Netgear | Gss108e Firmware | All | All | All | All |
| Operating System | Netgear | Gss108e Firmware | All | All | All | All |
| Hardware | Netgear | Gss116e | - | All | All | All |
| Hardware | Netgear | Gss116e | - | All | All | All |
| Operating System | Netgear | Gss116e Firmware | All | All | All | All |
| Operating System | Netgear | Gss116e Firmware | All | All | All | All |
| Hardware | Netgear | Jgs516pe | - | All | All | All |
| Hardware | Netgear | Jgs516pe | - | All | All | All |
| Operating System | Netgear | Jgs516pe Firmware | All | All | All | All |
| Operating System | Netgear | Jgs516pe Firmware | All | All | All | All |
| Hardware | Netgear | Jgs524e | v2 | All | All | All |
| Hardware | Netgear | Jgs524e | v2 | All | All | All |
| Operating System | Netgear | Jgs524e Firmware | All | All | All | All |
| Operating System | Netgear | Jgs524e Firmware | All | All | All | All |
| Hardware | Netgear | Jgs524pe | - | All | All | All |
| Hardware | Netgear | Jgs524pe | - | All | All | All |
| Operating System | Netgear | Jgs524pe Firmware | All | All | All | All |
| Operating System | Netgear | Jgs524pe Firmware | All | All | All | All |
| Hardware | Netgear | Xs512em | - | All | All | All |
| Hardware | Netgear | Xs512em | - | All | All | All |
| Operating System | Netgear | Xs512em Firmware | All | All | All | All |
| Operating System | Netgear | Xs512em Firmware | All | All | All | All |
| Hardware | Netgear | Xs708e | v2 | All | All | All |
| Hardware | Netgear | Xs708e | v2 | All | All | All |
| Operating System | Netgear | Xs708e Firmware | All | All | All | All |
| Operating System | Netgear | Xs708e Firmware | All | All | All | All |
| Hardware | Netgear | Xs716e | - | All | All | All |
| Hardware | Netgear | Xs716e | - | All | All | All |
| Operating System | Netgear | Xs716e Firmware | All | All | All | All |
| Operating System | Netgear | Xs716e Firmware | All | All | All | All |
| Hardware | Netgear | Xs724em | - | All | All | All |
| Hardware | Netgear | Xs724em | - | All | All | All |
| Operating System | Netgear | Xs724em Firmware | All | All | All | All |
| Operating System | Netgear | Xs724em Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory for Missing Function Level Access Control on Some Switches, PSV-2018-0542 | Answer | NETGEAR Support | CONFIRM | kb.netgear.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.