CVE-2019-20646

Severity
9.8CRITICAL
EPSS
0.3%
top 45.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 15
Latest updateMay 24

Description

NETGEAR RAX40 devices before 1.0.3.64 are affected by disclosure of administrative credentials.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDnetgear/rax40_firmware< 1.0.3.64

🔴Vulnerability Details

2
GHSA
GHSA-877f-fpjf-g2cr: NETGEAR RAX40 devices before 12022-05-24
CVEList
CVE-2019-20646: NETGEAR RAX40 devices before 12020-04-15
CVE-2019-20646 (CRITICAL CVSS 9.8) | NETGEAR RAX40 devices before 1.0.3. | cvebase.io