CVE-2020-35231
published 2021-03-10CVE-2020-35231: The NSDP protocol implementation on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices was affected by an authentication issue that allows an attacker to bypass…
PriorityP350high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
1.07%
60.9th percentile
The NSDP protocol implementation on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices was affected by an authentication issue that allows an attacker to bypass access controls and obtain full control of the device.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| netgear | gs116e_firmware | — | — |
| netgear | jgs516pe_firmware | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.08.3HIGHAV:A/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Suricata
ET EXPLOIT Possible NSDP (Netgear) Remote Authentication Bypass with Factory Reset (CVE-2020-35231)
suricata·2021-03-11·CVSS 8.8
CVE-2020-35231 [HIGH] ET EXPLOIT Possible NSDP (Netgear) Remote Authentication Bypass with Factory Reset (CVE-2020-35231)
ET EXPLOIT Possible NSDP (Netgear) Remote Authentication Bypass with Factory Reset (CVE-2020-35231)
Rule: alert udp $HOME_NET any -> any 60000: (msg:"ET EXPLOIT Possible NSDP (Netgear) Remote Authentication Bypass with Factory Reset (CVE-2020-35231)"; dsize:13; content:"|00 1a 00 00 04 00 00 01 01 ff ff 00 00|"; fast_pattern; reference:url,research.nccgroup.com/2021/03/08/technical-advisory-multiple-vulnerabilities-in-netgear-prosafe-plus-jgs516pe-gs116ev2-switches/; reference:cve,2020-35231; classtype:attempted-admin; sid:2031937; rev:2; metadata:created_at 2021_03_11, cve CVE_2020_35231, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2021_03_11, mitre_tactic_id TA0001, mitre_tactic_name Init
No public exploits indexed.
Talos
Threat Source Newsletter (March 25, 2021)
blogs_talos·2021-03-25
Threat Source Newsletter (March 25, 2021)
Newsletter compiled by Jon Munshaw.
Good afternoon, Talos readers.
The Cisco Talos Incident Response team has several new, valuable insights into the threat landscape in the latest Quarterly Trends report. This post highlights the malware families our researchers are seeing most often in the field, and what tactics adversaries are using to infect victims.
We also have a new walkthrough available on the Talos blog of how to use Cisco Secure IPS to detect and protect against the Hafnium zero-day vulnerabilities in Microsoft Exchange Server.
On the Snort end of things, we have a new roundtable video up on our YouTube page talking about the history of Snort 3. We even managed to get Marty Roesch, the creator of Snort, on. Watch the full discussion below to find out how Snort 3 even came to
Talos
Threat Source Newsletter (March 25, 2021)
blogs_talos·2021-03-25
Threat Source Newsletter (March 25, 2021)
## Threat Source Newsletter (March 25, 2021)
Newsletter compiled by Jon Munshaw.
Good afternoon, Talos readers.
The Cisco Talos Incident Response team has several new, valuable insights into the threat landscape in the latest Quarterly Trends report . This post highlights the malware families our researchers are seeing most often in the field, and what tactics adversaries are using to infect victims.
We also have a new walkthrough available on the Talos blog of how to use Cisco Secure IPS to detect and protect against the Hafnium zero-day vulnerabilities in Microsoft Exchange Server .
On the Snort end of things, we have a new roundtable video up on our YouTube page talking about the history of Snort 3. We even managed to get Marty Roesch, the creator of Snort, on. Watch the full discu
2021-03-10
Published