Description
Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.
Published: 2020-04-20
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-9928 Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12.0.2.15.
History

No history.

Subscriptions

Netgear M4200 M4200 Firmware M4300-12x12f M4300-12x12f Firmware M4300-24x M4300-24x24f M4300-24x24f Firmware M4300-24x Firmware M4300-28g M4300-28g-poe\+ M4300-28g-poe\+ Firmware M4300-28g Firmware M4300-48x M4300-48x Firmware M4300-52g M4300-52g-poe\+ M4300-52g-poe\+ Firmware M4300-52g Firmware M4300-8x8f M4300-8x8f Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T21:37:44.259Z

Reserved: 2020-04-20T00:00:00.000Z

Link: CVE-2017-18837

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-20T17:15:15.133

Modified: 2024-11-21T03:21:03.163

Link: CVE-2017-18837

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses