Missing SSL Certificate Validation Vulnerability in NETGEAR Routers
CVE-2020-13245
5.9MEDIUM
Summary
Certain models of NETGEAR routers are susceptible to a vulnerability due to missing SSL certificate validation. This flaw allows attackers to intercept and manipulate network traffic, leading to potential unauthorized access to sensitive data. Affected devices include various models such as R7000, R6120, and R8000, which could be targeted if not properly secured. It is crucial for users of these devices to be aware of this issue and to apply necessary updates and configurations to safeguard their networks.
References
CVSS V3.1
Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved