CVE-2018-21102
HIGHNETGEAR ReadyNAS OS Firmware < 6.9.3 - Cross-Site Request Forgery
Title source: llmDescription
NETGEAR ReadyNAS devices before 6.9.3 are affected by CSRF.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://kb.netgear.com/000060454/Security-Advisory-for-Cross-Site-Request-Forgery-on-ReadyNAS-OS-6-PSV-2018-0373
Scores
CVSS v3
8.8
EPSS
0.0021
EPSS Percentile
43.2%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-352
Status
published
Products (1)
netgear/readynas_os_firmware
6.0 - 6.9.3
Published
Apr 23, 2020
Tracked Since
Feb 18, 2026