First published: Thu Dec 19 2013(Updated: )
NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and GS728TXS with firmware 6.1.0.12 allows remote attackers to read encrypted administrator credentials and other startup configurations via a direct request to filesystem/startup-config.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Prosafe Firmware | =5.3.0.17 | |
Netgear ProSafe GS725TS | ||
Netgear ProSafe GS728TPS | ||
Netgear ProSafe GS728TS | ||
Netgear ProSafe GS752TPS | ||
Netgear Prosafe Firmware | <=5.4.1.13 | |
Netgear Prosafe Firmware | =5.0.4.4 | |
Netgear Prosafe Firmware | =5.4.0.6 | |
Netgear Prosafe Firmware | =5.4.1.10 | |
Netgear ProSAFE | =v3 | |
Netgear ProSAFE | =v2 | |
Netgear Prosafe Firmware | =6.1.0.12 | |
Netgear GS728TXS Firmware | ||
Netgear Prosafe GS752TPS | ||
Netgear Prosafe Firmware | <=5.4.1.14 | |
Netgear Prosafe Firmware | =5.4.1.13 | |
Netgear ProSafe GS748T | =v4 | |
Netgear GS510TP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4775 is classified as a medium severity vulnerability allowing remote attackers to access sensitive data.
To fix CVE-2013-4775, upgrade the affected NETGEAR ProSafe firmware to a version later than 5.4.1.13 for the respective models.
CVE-2013-4775 affects several NETGEAR ProSafe devices including GS724Tv3, GS716Tv2, GS748Tv4, and others with specific firmware versions.
CVE-2013-4775 can be exploited by remote attackers to read encrypted administrator credentials.
There are no specific workarounds for CVE-2013-4775 other than upgrading the firmware to a secure version.