Vulnerabilities > Netgear > Jgs516Pe Firmware

DATE CVE VULNERABILITY TITLE RISK
2021-03-10 CVE-2020-35221 Inadequate Encryption Strength vulnerability in Netgear Gs116E Firmware and Jgs516Pe Firmware
The hashing algorithm implemented for NSDP password authentication on NETGEAR JGS516PE/GS116Ev2 v2.6.0.43 devices was found to be insecure, allowing attackers (with access to a network capture) to quickly generate multiple collisions to generate valid passwords, or infer some parts of the original.
low complexity
netgear CWE-326
8.8
2020-12-30 CVE-2020-35801 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear
7.3
2020-12-30 CVE-2020-35784 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by lack of access control at the function level.
network
low complexity
netgear
7.2
2020-12-30 CVE-2020-35783 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by lack of access control at the function level.
low complexity
netgear
6.5
2020-12-30 CVE-2020-35782 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by lack of access control at the function level.
low complexity
netgear
8.1
2020-10-09 CVE-2020-26919 Unspecified vulnerability in Netgear Jgs516Pe Firmware 2.6.0.35
NETGEAR JGS516PE devices before 2.6.0.43 are affected by lack of access control at the function level.
network
low complexity
netgear
critical
9.8
2020-04-28 CVE-2017-18862 Improper Authentication vulnerability in Netgear products
Certain NETGEAR devices are affected by authentication bypass.
low complexity
netgear CWE-287
6.5
2020-04-15 CVE-2019-20676 Missing Authorization vulnerability in Netgear products
Certain NETGEAR devices are affected by lack of access control at the function level.
local
low complexity
netgear CWE-862
6.0
2020-04-15 CVE-2019-20658 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
low complexity
netgear
6.5
2020-04-15 CVE-2020-11791 Cross-site Scripting vulnerability in Netgear Jgs516Pe Firmware 2.6.0.35
NETGEAR JGS516PE devices before 2.6.0.43 are affected by reflected XSS.
network
low complexity
netgear CWE-79
6.1