Vulnerability Description
Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11, JGS524Ev2 before 2017-05-11, JGS524PE before 2017-05-11, GS105Ev2 before 2017-05-11, GS105PE before 2017-05-11, GS108Ev3 before 2017-05-11, GS108PEv3 before 2017-05-11, GS116Ev2 before 2017-05-11, GSS108E before 2017-05-11, GSS116E before 2017-05-11, XS708Ev2 before 2017-05-11, and XS716E before 2017-05-11.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Jgs516Pe Firmware | < 2017-05-11 |
| Netgear | Jgs516Pe | - |
| Netgear | Jgs524E Firmware | < 2017-05-11 |
| Netgear | Jgs524E | v2 |
| Netgear | Jgs524Pe Firmware | < 2017-05-11 |
| Netgear | Jgs524Pe | - |
| Netgear | Gs105E Firmware | < 2017-05-11 |
| Netgear | Gs105E | v2 |
| Netgear | Gs105Pe Firmware | < 2017-05-11 |
| Netgear | Gs105Pe | - |
| Netgear | Gs108E Firmware | < 2017-05-11 |
| Netgear | Gs108E | v3 |
| Netgear | Gs108Pe Firmware | < 2017-05-11 |
| Netgear | Gs108Pe | v3 |
| Netgear | Gs116E Firmware | < 2017-05-11 |
| Netgear | Gs116E | v2 |
| Netgear | Gss108E Firmware | < 2017-05-11 |
| Netgear | Gss108E | - |
| Netgear | Gss116E Firmware | < 2017-05-11 |
| Netgear | Gss116E | - |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000037849/Security-Advisory-for-Authentication-Bypass-on-Vendor Advisory
- https://kb.netgear.com/000037849/Security-Advisory-for-Authentication-Bypass-on-Vendor Advisory
FAQ
What is CVE-2017-18862?
CVE-2017-18862 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Certain NETGEAR devices are affected by authentication bypass. This affects JGS516PE before 2017-05-11, JGS524Ev2 before 2017-05-11, JGS524PE before 2017-05-11, GS105Ev2 before 2017-05-11, GS105PE bef...
How severe is CVE-2017-18862?
CVE-2017-18862 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-18862?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear Jgs516Pe Firmware, Netgear Jgs516Pe, Netgear Jgs524E Firmware, Netgear Jgs524E, Netgear Jgs524Pe Firmware.