Multiple NetGear Routers SOAP Service Authentication Bypass Vulnerability
BID:72640
Info
Multiple NetGear Routers SOAP Service Authentication Bypass Vulnerability
| Bugtraq ID: | 72640 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 17 2015 12:00AM |
| Updated: | Feb 17 2015 12:00AM |
| Credit: | Peter Adkins |
| Vulnerable: |
NetGear WNR2500 1.0.0.24 NetGear WNR2200 1.0.1.88 NetGear WNDR3700v4 1.0.1.52 NetGear WNDR3700v4 1.0.0.4SH |
| Not Vulnerable: | |
Discussion
Multiple NetGear Routers SOAP Service Authentication Bypass Vulnerability
Multiple NetGear Routers are prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and gain potentially sensitive information.
NetGear WNDR3700v4 V1.0.0.4SH, WNDR3700v4 V1.0.1.52, WNR2200 V1.0.1.88, WNR2500 V1.0.0.24 are vulnerable.
Multiple NetGear Routers are prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to bypass the authentication mechanism and gain potentially sensitive information.
NetGear WNDR3700v4 V1.0.0.4SH, WNDR3700v4 V1.0.1.52, WNR2200 V1.0.1.88, WNR2500 V1.0.0.24 are vulnerable.
Solution / Fix
Multiple NetGear Routers SOAP Service Authentication Bypass Vulnerability
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].