CVE-2017-18838

Severity
7.8HIGH
EPSS
0.0%
top 84.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 20
Latest updateMay 24

Description

Certain NETGEAR devices are affected by privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages10 packages

🔴Vulnerability Details

2
GHSA
GHSA-g8hp-5cff-26v7: Certain NETGEAR devices are affected by privilege escalation2022-05-24
CVEList
CVE-2017-18838: Certain NETGEAR devices are affected by privilege escalation2020-04-20

💬Community

1
Bugzilla
CVE-2017-2662 foreman: Managing repositories with their id via hammer does not respect the role filters2017-03-20