CVE-2021-44261
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD
Description
A vulnerability is in the 'BRS_top.html' page of the Netgear W104, version WAC104-V1.0.4.13, which can allow a remote attacker to access this page without any authentication. When processed, it exposes firmware version information for the device.
Affected (5)
Products: Netgear: Wac104 Firmware, R7450 Firmware, R6900 Firmware, R7800 Firmware, R6220 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.0.4.13 |
| Running on/with | Platform Versions |
|---|---|
Netgear Wac104 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netgear R7450 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netgear R6900 | Version v2 |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| All versions |
| Running on/with | Platform Versions |
|---|---|
Netgear R7800 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.1.0.34_1.0.1 |
| Running on/with | Platform Versions |
|---|---|
Netgear R6220 | All versions |
References (4)
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Timeline
No history available yet.