S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2020-27866 Scanner

CVE-2020-27866 scanner - Authentication Bypass vulnerability in Multiple NETGEAR Routers

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.8k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2020-27866
8.8
CVSShigh
Exploitable from an adjacent network · no authentication required.

This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the mini_httpd service, which listens on TCP port 80 by default. The issue results from incorrect string matching logic when accessing protected pages. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-11355.

Attack Vector
Adjacent
Privileges Req.
None
User Interaction
None
Affected
Multiple Routersby NETGEAR
firmware version 1.2.0.62_1.0.1
Updated Aug 21, 2026View on NVD →
Detail

NETGEAR routers are popular networking devices used to provide home and small-scale office networking solutions. These routers provide wireless and wired networking connectivity options for various devices. NETGEAR routers are highly efficient in managing network traffic, providing secure internet access, and creating multiple networks for different users and devices. Their robust feature set makes them a popular choice for consumers and small business owners who desire a reliable network infrastructure.

A critical vulnerability, CVE-2020-27866, has been detected in several NETGEAR routers, including R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 models. This vulnerability allows attackers to bypass authentication on the affected routers without the need for any credentials. The issue exists within the mini_httpd service that listens to TCP port 80 by default. The flaw is a result of incorrect string matching logic when trying to access protected pages.

If the CVE-2020-27866 vulnerability is exploited, hackers can gain control of the device and execute arbitrary code with root privileges. An attacker can use this vulnerability in conjunction with other exploits to launch attacks on the network, including stealing sensitive data, installing backdoors, and hijacking the router or connected devices. This can compromise the entire network and expose it to serious security threats.

Thanks to the professional features of the s4e.io platform, you can easily and quickly learn about vulnerabilities in your digital assets. The platform provides real-time alerts on critical vulnerabilities, including CVE-2020-27866, helping users to keep their networks secure. It also offers detailed reports on vulnerabilities and proactive measures to mitigate them before they are exploited. By subscribing to s4e.io, users can ensure that they stay ahead of emerging security threats and protect their digital infrastructure.

 

REFERENCES

Solution Advice

To protect against the CVE-2020-27866 vulnerability, NETGEAR recommends updating the affected routers to the latest firmware version, which includes a fix for the issue. The following additional precautions can also be taken:

  • Disable remote management access to the router
  • Use strong and unique passwords for login credentials
  • Configure the router firewall to restrict access to the mini_httpd service
  • Keep regular backups of the router configuration settings
  • Monitor the router's logs for suspicious activity

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.