Authentication Bypass in Netgear WNR1000v3 Firmware
CVE-2013-3317
9.8CRITICAL
Summary
The Netgear WNR1000v3 router is susceptible to an authentication bypass flaw due to an insecure implementation in its firmware. This vulnerability allows attackers to circumvent authentication measures via the use of the NtgrBak key. Exploiting this flaw could enable unauthorized access to the router’s administrative functions, potentially compromising network integrity and exposing sensitive information. Network administrators should ensure that they are using firmware version 1.0.2.60 or later, to mitigate the risk associated with this vulnerability.
References
CVSS V3.1
Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved