NETGEAR WNR3500L

CPE Details

NETGEAR WNR3500L
-
2019-12-13
17h39 +00:00
2019-12-13
17h39 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:h:netgear:wnr3500l:-:*:*:*:*:*:*:*

Informations

Vendor

netgear

Product

wnr3500l

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-3516 2019-11-13 18h30 +00:00 NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows attackers to guess the CSRF tokens.
6.5
Medium
CVE-2013-3517 2019-11-13 17h03 +00:00 Cross-site scripting (XSS) vulnerability in NETGEAR WNR3500U and WNR3500L.
5.4
Medium
CVE-2013-4657 2019-11-13 16h33 +00:00 Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
9.8
Critical
CVE-2019-17372 2019-10-09 10h06 +00:00 Certain NETGEAR devices allow remote attackers to disable all authentication requirements by visiting genieDisableLanChanged.cgi. The attacker can then, for example, visit MNU_accessPassword_recovered.html to obtain a valid new admin password. This affects AC1450, D8500, DC112A, JNDR3000, LG2200D, R4500, R6200, R6200V2, R6250, R6300, R6300v2, R6400, R6700, R6900P, R6900, R7000P, R7000, R7100LG, R7300, R7900, R8000, R8300, R8500, WGR614v10, WN2500RPv2, WNDR3400v2, WNDR3700v3, WNDR4000, WNDR4500, WNDR4500v2, WNR1000, WNR1000v3, WNR3500L, and WNR3500L.
8.1
High