CVE-2017-2137

ProSAFE Plus Configuration Utility prior to 2.3.29 allows remote attackers to bypass access restriction and change configurations of the switch via SOAP requests.
Configurations

Configuration 1 (hide)

cpe:2.3:a:netgear:prosafe_plus_configuration_utility:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:22

Type Values Removed Values Added
References () http://jvn.jp/en/jp/JVN08740778/index.html - Third Party Advisory, VDB Entry () http://jvn.jp/en/jp/JVN08740778/index.html - Third Party Advisory, VDB Entry
References () https://kb.netgear.com/000038443/Security-Advisory-for-Insecure-SOAP-Access-in-ProSAFE-Plus-Configuration-Utility-PSV-2017-1997 - Vendor Advisory () https://kb.netgear.com/000038443/Security-Advisory-for-Insecure-SOAP-Access-in-ProSAFE-Plus-Configuration-Utility-PSV-2017-1997 - Vendor Advisory

Information

Published : 2017-04-28 16:59

Updated : 2024-11-21 03:22


NVD link : CVE-2017-2137

Mitre link : CVE-2017-2137

CVE.ORG link : CVE-2017-2137


JSON object : View

Products Affected

netgear

  • prosafe_plus_configuration_utility