CVE-2019-20693
MEDIUMNETGEAR WAC505 and WAC510 Firmware < 8.0.6.4 - Incorrect Permission Assignment for Critical Resource
Title source: llmDescription
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects WAC505 before 8.0.6.4 and WAC510 before 8.0.6.4.
References (1)
Core 1
Core References
Permissions Required x_refsource_confirm
https://kb.netgear.com/000061236/Security-Advisory-for-Security-Misconfiguration-on-WAC505-and-WAC510-PSV-2019-0084
Scores
CVSS v3
5.4
EPSS
0.0046
EPSS Percentile
36.5%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Details
CWE
CWE-732
Status
published
Products (2)
netgear/wac505_firmware
< 8.0.6.4
netgear/wac510_firmware
< 8.0.6.4
Published
Apr 16, 2020
Tracked Since
Feb 18, 2026