Lucene search

K
cveMitreCVE-2013-4775
HistoryDec 19, 2013 - 4:24 a.m.

CVE-2013-4775

2013-12-1904:24:48
CWE-200
mitre
web.nvd.nist.gov
36
cve-2013-4775
netgear
prosafe
gs724tv3
gs716tv2
firmware
security
vulnerability
credentials
remote attack

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.616

Percentile

97.8%

NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and GS728TXS with firmware 6.1.0.12 allows remote attackers to read encrypted administrator credentials and other startup configurations via a direct request to filesystem/startup-config.

Affected configurations

Nvd
Node
netgearprosafe_firmwareMatch5.3.0.17
AND
netgearprosafe_gs725tsMatch-
OR
netgearprosafe_gs728tpsMatch-
OR
netgearprosafe_gs728tsMatch-
OR
netgearprosafe_gs752tpsMatch-
Node
netgearprosafe_firmwareRange5.4.1.13
OR
netgearprosafe_firmwareMatch5.0.4.4
OR
netgearprosafe_firmwareMatch5.3.0.17
OR
netgearprosafe_firmwareMatch5.4.0.6
OR
netgearprosafe_firmwareMatch5.4.1.10
AND
netgearprosafe_gs724tMatchv3
OR
netgearprosafe_s716tMatchv2
Node
netgearprosafe_firmwareMatch6.1.0.12
AND
netgearprosafe_gs728txsMatch-
OR
netgearprosafe_gs752txsMatch-
Node
netgearprosafe_firmwareRange5.4.1.14
OR
netgearprosafe_firmwareMatch5.0.4.4
OR
netgearprosafe_firmwareMatch5.3.0.17
OR
netgearprosafe_firmwareMatch5.4.0.6
OR
netgearprosafe_firmwareMatch5.4.1.10
OR
netgearprosafe_firmwareMatch5.4.1.13
AND
netgearprosafe_gs748tMatchv4
Node
netgearprosafe_firmwareMatch5.4.0.6
AND
netgearprosafe_gs510tpMatch-
VendorProductVersionCPE
netgearprosafe_firmware5.3.0.17cpe:2.3:o:netgear:prosafe_firmware:5.3.0.17:*:*:*:*:*:*:*
netgearprosafe_gs725ts-cpe:2.3:h:netgear:prosafe_gs725ts:-:*:*:*:*:*:*:*
netgearprosafe_gs728tps-cpe:2.3:h:netgear:prosafe_gs728tps:-:*:*:*:*:*:*:*
netgearprosafe_gs728ts-cpe:2.3:h:netgear:prosafe_gs728ts:-:*:*:*:*:*:*:*
netgearprosafe_gs752tps-cpe:2.3:h:netgear:prosafe_gs752tps:-:*:*:*:*:*:*:*
netgearprosafe_firmware*cpe:2.3:o:netgear:prosafe_firmware:*:*:*:*:*:*:*:*
netgearprosafe_firmware5.0.4.4cpe:2.3:o:netgear:prosafe_firmware:5.0.4.4:*:*:*:*:*:*:*
netgearprosafe_firmware5.4.0.6cpe:2.3:o:netgear:prosafe_firmware:5.4.0.6:*:*:*:*:*:*:*
netgearprosafe_firmware5.4.1.10cpe:2.3:o:netgear:prosafe_firmware:5.4.1.10:*:*:*:*:*:*:*
netgearprosafe_gs724tv3cpe:2.3:h:netgear:prosafe_gs724t:v3:*:*:*:*:*:*:*
Rows per page:
1-10 of 171

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:C/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.616

Percentile

97.8%