CVE-2020-13245: NETGEAR r6120 Firmware

Medium severity, CVSS 5.9. EPSS: 0.5% chance of exploitation in the next 30 days.

Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibly R6120, R7800, R6220, R8000, R6350, R9000, R6400, RAX120, R6400v2, RBR20, R6800, XR300, R6850, XR500, and R7000P.

Affected products

  • NETGEAR r6120 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r6220 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r6350 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r6400 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r6800 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r6850 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r7000p Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r7800 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r8000 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR r9000 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR RAX120 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR RBR20 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR XR300 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100
  • NETGEAR XR500 Firmware: from v1.0.9.6_1.2.19, up to and including v1.0.11.100_10.2.100

Published 2020-05-28. Last modified 2026-06-17.