CVE-2024-36788

Netgear WNR614 JNR1010V2 N300-V1.1.0.54_1.0.1 does not properly set the HTTPOnly flag for cookies. This allows attackers to possibly intercept and access sensitive communications between the router and connected devices.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:wnr614_firmware:1.1.0.54_1.0.1:*:*:*:*:*:*:*
cpe:2.3:h:netgear:wnr614:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-06-07 15:15

Updated : 2024-11-21 09:22


NVD link : CVE-2024-36788

Mitre link : CVE-2024-36788

CVE.ORG link : CVE-2024-36788


JSON object : View

Products Affected

netgear

  • wnr614_firmware
  • wnr614
CWE
NVD-CWE-Other CWE-922

Insecure Storage of Sensitive Information