Vulnerabilities > Netgear > Nighthawk R7000 Firmware

DATE CVE VULNERABILITY TITLE RISK
2020-11-02 CVE-2020-28041 Incorrect Default Permissions vulnerability in Netgear Nighthawk R7000 Firmware 1.0.9.6410.2.64
The SIP ALG implementation on NETGEAR Nighthawk R7000 1.0.9.64_10.2.64 devices allows remote attackers to communicate with arbitrary TCP and UDP services on a victim's intranet machine, if the victim visits an attacker-controlled web site with a modern browser, aka NAT Slipstreaming.
network
low complexity
netgear CWE-276
6.5