CyberSec.Space Logo
Back to CVE Browser

CVE-2020-35801

HIGH
8.3
CVSS Severity Score
EPSS Score0.0710%
EPSS Percentile11.26th
PublishedDec 30, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects JGS516PE before 2.6.0.48, JGS524Ev2 before 2.6.0.48, JGS524PE before 2.6.0.48, and GS116Ev2 before 2.6.0.48. A TFTP server was found to be active by default. It allows remote authenticated users to update the switch firmware.

Affected Platforms (CPE)

πŸ’»
Netgear

Jgs516pe Firmware

< 2.6.0.48
πŸ’»
Netgear

Jgs524e Firmware

< 2.6.0.48
πŸ’»
Netgear

Jgs524pe Firmware

< 2.6.0.48
πŸ’»
Netgear

Gs116e Firmware

< 2.6.0.48

References & Advisories

Related Vulnerabilities