Vulnerability Details CVE-2016-10116
NETGEAR Arlo base stations with firmware 1.7.5_6178 and earlier, Arlo Q devices with firmware 1.8.0_5551 and earlier, and Arlo Q Plus devices with firmware 1.8.1_6094 and earlier use a pattern of adjective, noun, and three-digit number for the customized password, which makes it easier for remote attackers to obtain access via a dictionary attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.071
EPSS Ranking 91.2%
CVSS Severity
CVSS v3 Score 8.1
CVSS v2 Score 9.3
Products affected by CVE-2016-10116
-
cpe:2.3:h:netgear:vmb30x0:-
-
cpe:2.3:h:netgear:vmc3040:-
-
cpe:2.3:h:netgear:vmc3040s:-
-
cpe:2.3:h:netgear:vmk3xx0:-
-
cpe:2.3:h:netgear:vms3xx0:-
-
cpe:2.3:o:netgear:arlo_base_station_firmware:1.7.5_6178
-
cpe:2.3:o:netgear:arlo_q_camera_firmware:1.8.0_5551
-
cpe:2.3:o:netgear:arlo_q_plus_camera_firmware:1.8.1_6094