Security Misconfiguration in NETGEAR ReadyNAS Products
CVE-2018-21159

4.5MEDIUM

Key Information:

Vendor
Netgear
Vendor
CVE Published:
27 April 2020

Summary

NETGEAR ReadyNAS devices running versions prior to 6.9.3 are vulnerable due to improper security settings configuration, potentially exposing sensitive information and increasing risk of unauthorized access. Users are advised to review their security settings and update to the latest version to mitigate risks.

References

CVSS V3.1

Score:
4.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.