CVE-2020-11550 HIGH

CVE-2020-11550

Vendor N/A
Product n/a
Published May 18, 2020
Last update August 4, 2024

CVSS base score

7.4/10
Attack vector Adjacent
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity None

CVSS vector

CVSS:3.0/AC:L/AV:A/A:N/C:H/I:N/PR:N/S:C/UI:N

What the vulnerability does

01Description

An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 V2.5.1.106. The administrative SOAP interface allows an unauthenticated remote leak of sensitive/arbitrary Wi-Fi information, such as SSIDs and Pre-Shared-Keys (PSK).

Key dates

02Disclosure timeline

May 18, 2020 CVE published
August 4, 2024 Record updated