Certain NETGEAR devices are affected by lack of access control at the function level. This affects JGS516PE before 2.6.0.48, GS116Ev2 before 2.6.0.48, JGS524Ev2 before 2.6.0.48, and JGS524PE before 2.6.0.48. The NSDP protocol version allows unauthenticated remote attackers to obtain all the switch configuration parameters by sending the corresponding read requests.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-29T23:41:04
Updated: 2024-08-04T17:09:15.185Z
Reserved: 2020-12-29T00:00:00
Link: CVE-2020-35783
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-30T00:15:13.267
Modified: 2024-11-21T05:28:05.050
Link: CVE-2020-35783
Redhat
No data.