CVE-2020-35231

HIGH

NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 - Authentication Bypass via NSDP Protocol

Title source: llm
STIX 2.1

Description

The NSDP protocol implementation on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices was affected by an authentication issue that allows an attacker to bypass access controls and obtain full control of the device.

Scores

CVSS v3 8.8
EPSS 0.0010
EPSS Percentile 26.8%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287
Status published
Products (2)
netgear/gs116e_firmware 2.6.0.43
netgear/jgs516pe_firmware 2.6.0.43
Published Mar 10, 2021
Tracked Since Feb 18, 2026