CVE-2007-4361: Critical severity Netgear ReadyNAS RAIDiator vulnerability
NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta creates a default SSH root password derived from the hardware serial number, which makes it easier for remote attackers to guess the password and obtain login access.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4361?
CVE-2007-4361 is considered a high severity vulnerability due to its potential for facilitating unauthorized access through weak default credentials.
How do I fix CVE-2007-4361?
To fix CVE-2007-4361, change the default SSH root password to a strong, unique password that is not derived from hardware identifiers.
What software versions are affected by CVE-2007-4361?
CVE-2007-4361 affects Netgear ReadyNAS RAIDiator versions 3.01c1-p1 and 3.01c1-p6.
Who is affected by CVE-2007-4361?
Users of Netgear (Infrant) ReadyNAS devices running vulnerable versions of RAIDiator are at risk from CVE-2007-4361.
Can CVE-2007-4361 be exploited remotely?
Yes, CVE-2007-4361 can be exploited remotely, allowing attackers to gain unauthorized login access.