CVE-2018-21131

CRITICAL

NETGEAR - Unauthenticated Firmware Downgrade

Title source: llm
STIX 2.1

Description

Certain NETGEAR devices are affected by unauthenticated firmware downgrade. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.

Scores

CVSS v3 9.1
EPSS 0.0028
EPSS Percentile 51.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Details

Status published
Products (2)
netgear/wac505_firmware < 5.0.0.17
netgear/wac510_firmware < 5.0.0.17
Published Apr 23, 2020
Tracked Since Feb 18, 2026