Administrative Password Disclosure in NETGEAR Devices
CVE-2017-18777

8.4HIGH

Key Information:

Vendor
Netgear
Vendor
CVE Published:
22 April 2020

Summary

Certain NETGEAR routers and gateways are susceptible to a vulnerability that allows unauthorized access to administrative passwords. This issue impacts various models, enabling attackers to disclose sensitive information and potentially gain control over network settings. Users of affected devices should update their firmware to mitigate this risk. For further details, refer to NETGEAR's security advisory.

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.