NETGEAR WNR3500L

CPE Details

NETGEAR WNR3500L
-
2019-12-13
17h39 +00:00
2019-12-13
17h39 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:h:netgear:wnr3500l:-:*:*:*:*:*:*:*

Informations

Vendor

netgear

Product

wnr3500l

Version

-

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2013-3516 2019-11-13 18h30 +00:00 NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows attackers to guess the CSRF tokens.
6.5
Moyen
CVE-2013-3517 2019-11-13 17h03 +00:00 Cross-site scripting (XSS) vulnerability in NETGEAR WNR3500U and WNR3500L.
5.4
Moyen
CVE-2013-4657 2019-11-13 16h33 +00:00 Symlink Traversal vulnerability in NETGEAR WNR3500U and WNR3500L due to misconfiguration in the SMB service.
9.8
Critique
CVE-2019-17372 2019-10-09 10h06 +00:00 Certain NETGEAR devices allow remote attackers to disable all authentication requirements by visiting genieDisableLanChanged.cgi. The attacker can then, for example, visit MNU_accessPassword_recovered.html to obtain a valid new admin password. This affects AC1450, D8500, DC112A, JNDR3000, LG2200D, R4500, R6200, R6200V2, R6250, R6300, R6300v2, R6400, R6700, R6900P, R6900, R7000P, R7000, R7100LG, R7300, R7900, R8000, R8300, R8500, WGR614v10, WN2500RPv2, WNDR3400v2, WNDR3700v3, WNDR4000, WNDR4500, WNDR4500v2, WNR1000, WNR1000v3, WNR3500L, and WNR3500L.
8.1
Haute