VendorsNETGEARjnr1010any version
Vulnerabilities

NETGEAR JNR1010 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2016-11014
NETGEAR JNR1010 devices before 1.0.0.32 have Incorrect Access Control because the ok value of the auth cookie is a special case.
Published 2019-10-16 · Modified
9.8EPSS 0.025
CVE-2016-11015
NETGEAR JNR1010 devices before 1.0.0.32 allow cgi-bin/webproc CSRF via the :InternetGatewayDevice.X_TWSZ-COM_URL_Filter.BlackList.1.URL parameter.
Published 2019-10-16 · Modified
6.5EPSS 0.008
CVE-2016-11016
NETGEAR JNR1010 devices before 1.0.0.32 allow webproc?getpage= XSS.
Published 2019-10-16 · Modified
6.1EPSS 0.016