Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an unauthenticated attacker to gain administrative access to the device's web management interface by resetting the admin password.
References
Link | Resource |
---|---|
https://drupal9.tenable.com/security/research/tra-2023-10 | Permissions Required |
https://github.com/advisories/GHSA-pvxx-rv48-qw5m | Third Party Advisory |
https://drupal9.tenable.com/security/research/tra-2023-10 | Permissions Required |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 07:38
Type | Values Removed | Values Added |
---|---|---|
References | () https://drupal9.tenable.com/security/research/tra-2023-10 - Permissions Required |
Information
Published : 2023-03-14 22:15
Updated : 2024-11-21 07:38
NVD link : CVE-2023-1327
Mitre link : CVE-2023-1327
CVE.ORG link : CVE-2023-1327
JSON object : View
Products Affected
netgear
- rax30
- rax30_firmware
CWE
CWE-287
Improper Authentication