Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

CVE-2016-11059

7.5 · HIGH
Published Apr 28, 2020 netgear CWE-200 EPSS 1.07% (63th pctl)

Overview

CVE-2016-11059 is a high-severity vulnerability affecting netgear ac1450_firmware. It was published on April 28, 2020 and has a CVSS 3.1 base score of 7.5 (HIGH).

This vulnerability has a CVSS 3.1 base score of 7.5, rated HIGH. It can be exploited remotely over the network. No authentication or special privileges are required for exploitation.

Technical Description

Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06, DGN2200Bv4 before 2017-01-06, DGND3700v1 before 2017-01-06, DGND3700v2 before 2017-01-06, DGND3700Bv2 before 2017-01-06, JNR1010v1 before 2017-01-06, JNR1010v2 before 2017-01-06, JNR3300 before 2017-01-06, JR6100 before 2017-01-06, JR6150 before 2017-01-06, JWNR2000v5 before 2017-01-06, R2000 before 2017-01-06, R6050 before 2017-01-06, R6100 before 2017-01-06, R6200 before 2017-01-06, R6200v2 before 2017-01-06, R6220 before 2017-01-06, R6250 before 2017-01-06, R6300 before 2017-01-06, R6300v2 before

Remediation

Check the references section for vendor advisories and patches from netgear. Update ac1450_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

Affected Products

Vendor Product Versions Status
netgear ac1450_firmware >= 0, < 2017-01-06 Affected
netgear c6300_firmware >= 0, < 2017-01-06 Affected
netgear d1500_firmware >= 0, < 2017-01-06 Affected
netgear d3600_firmware >= 0, < 2017-01-06 Affected
netgear d500_firmware >= 0, < 2017-01-06 Affected
netgear d6000_firmware >= 0, < 2017-01-06 Affected
netgear d6100_firmware >= 0, < 2017-01-06 Affected
netgear d6200_firmware >= 0, < 2017-01-06 Affected
netgear d6200b_firmware >= 0, < 2017-01-06 Affected
netgear d6300_firmware >= 0, < 2017-01-06 Affected

Frequently Asked Questions

What is CVE-2016-11059?

CVE-2016-11059 is a high-severity vulnerability affecting netgear ac1450_firmware. It was published on April 28, 2020 and has a CVSS 3.1 base score of 7.5 (HIGH).

How severe is CVE-2016-11059?

This vulnerability has a CVSS 3.1 base score of 7.5, rated HIGH. It can be exploited remotely over the network. No authentication or special privileges are required for exploitation.

How do I fix or remediate CVE-2016-11059?

Check the references section for vendor advisories and patches from netgear. Update ac1450_firmware to the latest patched version. If immediate patching is not possible, review the CVSS vector to understand the attack surface and apply compensating controls such as network segmentation or access restrictions.

How can CyberStrike help with CVE-2016-11059?

CyberStrike's AI-powered security agents can automatically detect CVE-2016-11059 across your infrastructure using autonomous pentesting, DAST scanning, and HackBrowser. The platform continuously monitors for known vulnerabilities and provides actionable remediation guidance prioritized by real-world exploitability.