Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxhf-2c5f-jh3q

Опубликовано: 03 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 7.3

Описание

A vulnerability was found in Netgear WNR614 1.1.0.28_1.0.1WW. It has been classified as critical. This affects an unknown part of the component URL Handler. The manipulation with the input %00currentsetting.htm leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This issue appears to have been circulating as an 0day since 2024.

A vulnerability was found in Netgear WNR614 1.1.0.28_1.0.1WW. It has been classified as critical. This affects an unknown part of the component URL Handler. The manipulation with the input %00currentsetting.htm leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This issue appears to have been circulating as an 0day since 2024.

EPSS

Процентиль: 56%
0.00339
Низкий

6.9 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 7.3
nvd
8 месяцев назад

A vulnerability was found in Netgear WNR614 1.1.0.28_1.0.1WW. It has been classified as critical. This affects an unknown part of the component URL Handler. The manipulation with the input %00currentsetting.htm leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This issue appears to have been circulating as an 0day since 2024.

CVSS3: 7.3
fstec
около 1 года назад

Уязвимость микропрограммного обеспечения Wi-Fi роутера Netgear WNR614 N300, связанная с обходом процедуры аутентификации, позволяющая нарушителю обойти ограничения безопасности

EPSS

Процентиль: 56%
0.00339
Низкий

6.9 Medium

CVSS4

7.3 High

CVSS3

Дефекты

CWE-287