Vertical Privilege Escalation in NETGEAR Fully Managed Switches
CVE-2017-18829
7.8HIGH
Summary
Certain NETGEAR fully managed switches are susceptible to a vertical privilege escalation vulnerability. This flaw can allow an attacker to gain higher-level access privileges than intended, potentially leading to unauthorized actions within the device. The devices affected include several models of the M4300 series and the M4200, all running firmware prior to version 12.0.2.15. Users are advised to update their firmware to mitigate potential risks.
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved