CVE-2024-36788: NETGEAR WNR614 Firmware
Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.
Netgear WNR614 JNR1010V2 N300-V1.1.0.54_1.0.1 does not properly set the HTTPOnly flag for cookies. This allows attackers to possibly intercept and access sensitive communications between the router and connected devices.
Affected products
- NETGEAR WNR614 Firmware: version 1.1.0.54_1.0.1 only
Published 2024-06-07. Last modified 2026-06-17.