ID

VAR-202404-0474


CVE

CVE-2024-30570


TITLE

of netgear  R6850  Information disclosure vulnerability in firmware

Trust: 0.8

sources: JVNDB: JVNDB-2024-021512

DESCRIPTION

An information leak in debuginfo.htm of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required. of netgear R6850 Firmware has an information disclosure vulnerability.Information may be tampered with. Netgear R6850 is a wireless router from NETGEAR

Trust: 2.16

sources: NVD: CVE-2024-30570 // JVNDB: JVNDB-2024-021512 // CNVD: CNVD-2025-10688

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2025-10688

AFFECTED PRODUCTS

vendor:netgearmodel:r6850scope:eqversion:1.1.0.88

Trust: 1.0

vendor:ネットギアmodel:r6850scope:eqversion:r6850 firmware 1.1.0.88

Trust: 0.8

vendor:ネットギアmodel:r6850scope:eqversion: -

Trust: 0.8

vendor:ネットギアmodel:r6850scope: - version: -

Trust: 0.8

vendor:netgearmodel:r6850scope:eqversion:v1.1.0.88

Trust: 0.6

sources: CNVD: CNVD-2025-10688 // JVNDB: JVNDB-2024-021512 // NVD: CVE-2024-30570

CVSS

SEVERITY

CVSSV2

CVSSV3

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2024-30570
value: MEDIUM

Trust: 1.0

OTHER: JVNDB-2024-021512
value: MEDIUM

Trust: 0.8

CNVD: CNVD-2025-10688
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2025-10688
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

134c704f-9b21-4f2e-91b3-4a467353bcc0: CVE-2024-30570
baseSeverity: MEDIUM
baseScore: 5.3
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: LOW
availabilityImpact: NONE
exploitabilityScore: 3.9
impactScore: 1.4
version: 3.1

Trust: 1.0

OTHER: JVNDB-2024-021512
baseSeverity: MEDIUM
baseScore: 5.3
vectorString: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: NONE
integrityImpact: LOW
availabilityImpact: NONE
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: CNVD: CNVD-2025-10688 // JVNDB: JVNDB-2024-021512 // NVD: CVE-2024-30570

PROBLEMTYPE DATA

problemtype:CWE-200

Trust: 1.0

problemtype:information leak (CWE-200) [ others ]

Trust: 0.8

sources: JVNDB: JVNDB-2024-021512 // NVD: CVE-2024-30570

EXTERNAL IDS

db:NVDid:CVE-2024-30570

Trust: 3.2

db:JVNDBid:JVNDB-2024-021512

Trust: 0.8

db:CNVDid:CNVD-2025-10688

Trust: 0.6

sources: CNVD: CNVD-2025-10688 // JVNDB: JVNDB-2024-021512 // NVD: CVE-2024-30570

REFERENCES

url:https://github.com/funny-mud-peee/iot-vuls/blob/main/netgear%20r6850/info%20leak%20in%20netgear-r6850%ef%bc%88debuginfo.htm%ef%bc%89.md

Trust: 1.8

url:https://www.netgear.com/about/security/

Trust: 1.8

url:https://nvd.nist.gov/vuln/detail/cve-2024-30570

Trust: 1.4

sources: CNVD: CNVD-2025-10688 // JVNDB: JVNDB-2024-021512 // NVD: CVE-2024-30570

SOURCES

db:CNVDid:CNVD-2025-10688
db:JVNDBid:JVNDB-2024-021512
db:NVDid:CVE-2024-30570

LAST UPDATE DATE

2025-05-28T22:55:15.541000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-10688date:2025-05-27T00:00:00
db:JVNDBid:JVNDB-2024-021512date:2025-04-07T07:12:00
db:NVDid:CVE-2024-30570date:2025-04-04T16:32:17.887

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-10688date:2025-05-16T00:00:00
db:JVNDBid:JVNDB-2024-021512date:2025-04-07T00:00:00
db:NVDid:CVE-2024-30570date:2024-04-03T13:16:02.563