CVE-2020-35804Sensitive Information Exposure in Netgear D7800 Firmware

Severity
4.6MEDIUMNVD
CNA7.6
EPSS
0.1%
top 81.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30
Latest updateMay 24

Description

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D7800 before 1.0.1.58, R7800 before 1.0.2.74, R8900 before 1.0.5.18, R9000 before 1.0.5.18, and XR700 before 1.0.1.34.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 0.9 | Impact: 3.6

Affected Packages5 packages

NVDnetgear/d7800_firmware< 1.0.1.58
NVDnetgear/r7800_firmware< 1.0.2.74
NVDnetgear/r8900_firmware< 1.0.5.18
NVDnetgear/r9000_firmware< 1.0.5.18
NVDnetgear/xr700_firmware< 1.0.1.34

🔴Vulnerability Details

2
GHSA
GHSA-23x8-m9wv-h49m: Certain NETGEAR devices are affected by disclosure of sensitive information2022-05-24
CVEList
CVE-2020-35804: Certain NETGEAR devices are affected by disclosure of sensitive information2020-12-29
CVE-2020-35804 — Sensitive Information Exposure | cvebase