CVE-2019-20650Improper Input Validation in Netgear R8900 Firmware

Severity
7.5HIGHNVD
EPSS
0.2%
top 60.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 15
Latest updateMay 24

Description

Certain NETGEAR devices are affected by denial of service. This affects R8900 before 1.0.5.2, R9000 before 1.0.5.2, XR500 before 2.3.2.56, and XR700 before 1.0.1.20.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

NVDnetgear/r8900_firmware< 1.0.5.2
NVDnetgear/r9000_firmware< 1.0.5.2
NVDnetgear/xr500_firmware< 2.3.2.56
NVDnetgear/xr700_firmware< 1.0.1.20

🔴Vulnerability Details

2
GHSA
GHSA-x3q9-8683-qvcm: Certain NETGEAR devices are affected by denial of service2022-05-24
CVEList
CVE-2019-20650: Certain NETGEAR devices are affected by denial of service2020-04-15
CVE-2019-20650 — Improper Input Validation in Netgear | cvebase