CVE-2019-20679
Published Apr 15, 2020NETGEAR MR1100 devices before 12.06.08.00 are affected by lack of access control at the function level.
Vendor/product archive
5 CVEs tagged to netgear / mr1100 — 2 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.
NETGEAR MR1100 devices before 12.06.08.00 are affected by lack of access control at the function level.
NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of sensitive information.
NETGEAR MR1100 devices before 12.06.08.00 are affected by disclosure of administrative credentials.
An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. System commands can be executed, via the web interface, after authentication.
An issue was discovered on NETGEAR Nighthawk M1 (MR1100) devices before 12.06.03. The web-interface Cross-Site Request Forgery token is stored in a dynamically generated JavaScrip…