Vulnerabilities > Netgear > Cg3700B Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-03-13 CVE-2019-13395 Cross-Site Request Forgery (CSRF) vulnerability in Netgear Cg3700B Firmware 2.02.03
The Voo branded NETGEAR CG3700b custom firmware V2.02.03 allows CSRF against all /goform/ URIs.
network
low complexity
netgear CWE-352
8.8
2020-03-13 CVE-2019-13394 Insufficiently Protected Credentials vulnerability in Netgear Cg3700B Firmware 2.02.03
The Voo branded NETGEAR CG3700b custom firmware V2.02.03 uses HTTP Basic Authentication over cleartext HTTP.
network
low complexity
netgear CWE-522
critical
9.8
2020-03-13 CVE-2019-13393 Insecure Default Initialization of Resource vulnerability in Netgear Cg3700B Firmware 2.02.03
The Voo branded NETGEAR CG3700b custom firmware V2.02.03 uses the same default 8 character passphrase for the administrative console and the WPA2 pre-shared key.
network
low complexity
netgear CWE-1188
7.5