Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-102000
HistoryDec 12, 2021 - 12:00 a.m.

Netgear Access Control Error Vulnerability

2021-12-1200:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
netgear
rax35
vulnerability
firmware
http
packet
access control
unauthorized roles
attacker
sensitive information
cnvd

EPSS

0.001

Percentile

27.4%

Netgear RAX35 is a router from Netgear, Inc. A hardware device that connects two or more networks and acts as a gateway between networks.An access control error vulnerability exists in firmware versions prior to Netgear RAX35, RAX38 and RAX40 routers v1.0.4.102, which stems from a network system or product that does not properly restrict access to resources from unauthorized roles. An attacker could exploit the vulnerability by sending a carefully constructed HTTP packet to access sensitive restricted information.

EPSS

0.001

Percentile

27.4%

Related for CNVD-2021-102000