cbcvebase.
CVE-2019-13395
published 2020-03-13

CVE-2019-13395: The Voo branded NETGEAR CG3700b custom firmware V2.02.03 allows CSRF against all /goform/ URIs. An attacker can modify all settings including WEP/WPA/WPA2…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
The Voo branded NETGEAR CG3700b custom firmware V2.02.03 allows CSRF against all /goform/ URIs. An attacker can modify all settings including WEP/WPA/WPA2 keys, restore the router to factory settings, or even upload an entire malicious configuration file.

Affected

1 ranges
VendorProductVersion rangeFixed in
netgearcg3700b_firmware