QSearchQSearch

CVE-2021-38532

6.8 MEDIUM

NETGEAR WAC104 devices before 1.0.4.15 are affected by incorrect configuration of security settings

Published: 2021-08-11 · Last updated: 2026-06-17

Severity and scoring

CVSS
6.8 MEDIUM
Vector
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected products

VendorProduct
netgearwac104_firmware

Description

NETGEAR WAC104 devices before 1.0.4.15 are affected by incorrect configuration of security settings.

Source: NVD

References

Related CVEs

Same vendor

  • CVE-2021-40847 The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execu... (8.1 HIGH)
  • CVE-2021-41383 setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_serve... (7.2 HIGH)
  • CVE-2021-41314 Certain NETGEAR smart switches are affected by a \n injection in the web UI's password field, which - due to several faulty aspects of th... (8.8 HIGH)
  • CVE-2021-40867 Certain NETGEAR smart switches are affected by an authentication hijacking race-condition vulnerability by an unauthenticated attacker wh... (7.8 HIGH)
  • CVE-2021-40866 Certain NETGEAR smart switches are affected by a remote admin password change by an unauthenticated attacker via the (disabled by default... (9.8 CRITICAL)