CVE-2016-11059
Last modified
CVE-2016-11059 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06, DGN2200Bv4 before 2017-01-06, DGND3700v1 before 2017-01-06, DGND3700v2 before 2017-01-06, DGND3700Bv2 before 2017-01-06, JNR1010v1 before 2017-01-06, JNR1010v2 before 2017-01-06, JNR3300 before 2017-01-06, JR6100 before 2017-01-06, JR6150 before 2017-01-06, JWNR2000v5 before 2017-01-06, R2000 before 2017-01-06, R6050 before 2017-01-06, R6100 before 2017-01-06, R6200 before 2017-01-06, R6200v2 before 2017-01-06, R6220 before 2017-01-06, R6250 before 2017-01-06, R6300 before 2017-01-06, R6300v2 before 2017-01-06, R6700 before 2017-01-06, R7000 before 2017-01-06, R7900 before 2017-01-06, R7500 before 2017-01-06, R8000 before 2017-01-06, WGR614v10 before 2017-01-06, WNR1000v2 before 2017-01-06, WNR1000v3 before 2017-01-06, WNR1000v4 before 2017-01-06, WNR2000v3 before 2017-01-06, WNR2000v4 before 2017-01-06, WNR2000v5 before 2017-01-06, WNR2200 before 2017-01-06, WNR2500 before 2017-01-06, WNR3500Lv2 before 2017-01-06, WNDR3400v2 before 2017-01-06, WNDR3400v3 before 2017-01-06, WNDR3700v3 before 2017-01-06, WNDR3700v4 before 2017-01-06, WNDR3700v5 before 2017-01-06, WNDR4300 before 2017-01-06, WNDR4300v2 before 2017-01-06, WNDR4500v1 before 2017-01-06, WNDR4500v2 before 2017-01-06, and WNDR4500v3 before 2017-01-06.. EPSS estimates a 1.07% chance of exploitation in the next 30 days.
Description
Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06, DGN2200Bv4 before 2017-01-06, DGND3700v1 before 2017-01-06, DGND3700v2 before 2017-01-06, DGND3700Bv2 before 2017-01-06, JNR1010v1 before 2017-01-06, JNR1010v2 before 2017-01-06, JNR3300 before 2017-01-06, JR6100 before 2017-01-06, JR6150 before 2017-01-06, JWNR2000v5 before 2017-01-06, R2000 before 2017-01-06, R6050 before 2017-01-06, R6100 before 2017-01-06, R6200 before 2017-01-06, R6200v2 before 2017-01-06, R6220 before 2017-01-06, R6250 before 2017-01-06, R6300 before 2017-01-06, R6300v2 before 2017-01-06, R6700 before 2017-01-06, R7000 before 2017-01-06, R7900 before 2017-01-06, R7500 before 2017-01-06, R8000 before 2017-01-06, WGR614v10 before 2017-01-06, WNR1000v2 before 2017-01-06, WNR1000v3 before 2017-01-06, WNR1000v4 before 2017-01-06, WNR2000v3 before 2017-01-06, WNR2000v4 before 2017-01-06, WNR2000v5 before 2017-01-06, WNR2200 before 2017-01-06, WNR2500 before 2017-01-06, WNR3500Lv2 before 2017-01-06, WNDR3400v2 before 2017-01-06, WNDR3400v3 before 2017-01-06, WNDR3700v3 before 2017-01-06, WNDR3700v4 before 2017-01-06, WNDR3700v5 before 2017-01-06, WNDR4300 before 2017-01-06, WNDR4300v2 before 2017-01-06, WNDR4500v1 before 2017-01-06, WNDR4500v2 before 2017-01-06, and WNDR4500v3 before 2017-01-06.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Ac1450 Firmware | < 2017-01-06 |
| Netgear | C6300 Firmware | < 2017-01-06 |
| Netgear | D1500 Firmware | < 2017-01-06 |
| Netgear | D3600 Firmware | < 2017-01-06 |
| Netgear | D500 Firmware | < 2017-01-06 |
| Netgear | D6000 Firmware | < 2017-01-06 |
| Netgear | D6100 Firmware | < 2017-01-06 |
| Netgear | D6200 Firmware | < 2017-01-06 |
| Netgear | D6200b Firmware | < 2017-01-06 |
| Netgear | D6300 Firmware | < 2017-01-06 |
| Netgear | D6300b Firmware | < 2017-01-06 |
| Netgear | Dgn1000 Firmware | < 2017-01-06 |
| Netgear | Dgn2200 Firmware | < 2017-01-06 |
| Netgear | Dgn2200b Firmware | < 2017-01-06 |
| Netgear | Dgnd3700 Firmware | < 2017-01-06 |
| Netgear | Dgnd3700b Firmware | < 2017-01-06 |
| Netgear | Jnr1010 Firmware | < 2017-01-06 |
| Netgear | Jnr3300 Firmware | < 2017-01-06 |
| Netgear | Jr6100 Firmware | < 2017-01-06 |
| Netgear | Jr6150 Firmware | < 2017-01-06 |
| Netgear | Jwnr2000 Firmware | < 2017-01-06 |
| Netgear | R2000 Firmware | < 2017-01-06 |
| Netgear | R6050 Firmware | < 2017-01-06 |
| Netgear | R6100 Firmware | < 2017-01-06 |
| Netgear | R6200 Firmware | < 2017-01-06 |
| Netgear | R6220 Firmware | < 2017-01-06 |
| Netgear | R6250 Firmware | < 2017-01-06 |
| Netgear | R6300 Firmware | < 2017-01-06 |
| Netgear | R6700 Firmware | < 2017-01-06 |
| Netgear | R7000 Firmware | < 2017-01-06 |
| Netgear | R7500 Firmware | < 2017-01-06 |
| Netgear | R7900 Firmware | < 2017-01-06 |
| Netgear | R8000 Firmware | < 2017-01-06 |
| Netgear | Wgr614 Firmware | < 2017-01-06 |
| Netgear | Wndr3400 Firmware | < 2017-01-06 |
| Netgear | Wndr3700 Firmware | < 2017-01-06 |
| Netgear | Wndr4300 Firmware | < 2017-01-06 |
| Netgear | Wndr4500 Firmware | < 2017-01-06 |
| Netgear | Wnr1000 Firmware | < 2017-01-06 |
| Netgear | Wnr2000 Firmware | < 2017-01-06 |
| Netgear | Wnr2200 Firmware | < 2017-01-06 |
| Netgear | Wnr2500 Firmware | < 2017-01-06 |
| Netgear | Wnr3500l Firmware | < 2017-01-06 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2016-11059?
How severe is CVE-2016-11059?
How do I fix CVE-2016-11059?
Are you affected by CVE-2016-11059?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
