CVE-2018-21140

MEDIUM

NETGEAR D3600 and D6000 < 1.0.0.76 - Security Misconfiguration

Title source: llm
STIX 2.1

Description

Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.76 and D6000 before 1.0.0.76.

Scores

CVSS v3 6.5
EPSS 0.0030
EPSS Percentile 53.5%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Details

CWE
CWE-20
Status published
Products (2)
netgear/d3600_firmware < 1.0.0.76
netgear/d6000_firmware < 1.0.0.76
Published Apr 21, 2020
Tracked Since Feb 18, 2026