CVE-2016-11014: NETGEAR JNR1010 Firmware

Critical severity, CVSS 9.8. EPSS: 2.5% chance of exploitation in the next 30 days.

NETGEAR JNR1010 devices before 1.0.0.32 have Incorrect Access Control because the ok value of the auth cookie is a special case.

Affected products

  • NETGEAR JNR1010 Firmware: before 1.0.0.32 (fixed in 1.0.0.32)

Published 2019-10-16. Last modified 2026-06-17.