Missing SSL Certificate Validation Vulnerability in NETGEAR Routers
CVE-2020-13245

5.9MEDIUM

Key Information:

Vendor
Netgear
Vendor
CVE Published:
28 May 2020

Summary

Certain models of NETGEAR routers are susceptible to a vulnerability due to missing SSL certificate validation. This flaw allows attackers to intercept and manipulate network traffic, leading to potential unauthorized access to sensitive data. Affected devices include various models such as R7000, R6120, and R8000, which could be targeted if not properly secured. It is crucial for users of these devices to be aware of this issue and to apply necessary updates and configurations to safeguard their networks.

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.