CVE-2015-8288: NETGEAR d3600 Firmware

Medium severity, CVSS 5.9. EPSS: 1.9% chance of exploitation in the next 30 days.

NETGEAR D3600 devices with firmware 1.0.0.49 and D6000 devices with firmware 1.0.0.49 and earlier use the same hardcoded private key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Affected products

  • NETGEAR d3600 Firmware: version 1.0.0.49 only
  • NETGEAR d6000 Firmware: up to and including 1.0.0.49

Published 2016-06-20. Last modified 2026-06-17.