CVE-2018-21136

MEDIUM

NETGEAR D3600 and D6000 < 1.0.0.76 - Unauthorized Sensitive Information Exposure

Title source: llm
STIX 2.1

Description

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76.

Scores

CVSS v3 4.6
EPSS 0.0006
EPSS Percentile 18.5%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-200
Status published
Products (2)
netgear/d3600_firmware < 1.0.0.76
netgear/d6000_firmware < 1.0.0.76
Published Apr 23, 2020
Tracked Since Feb 18, 2026