First published: Wed Feb 15 2023(Updated: )
An uspecified endpoint in the web server of the switch does not properly authenticate the user identity, and may allow downloading a config page with the password to the switch in clear text.
Credit: cna@cyber.gov.il
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear Prosafe FS726TP Firmware | ||
Netgear Prosafe FS726TP Firmware |
The FS726TP switch is End of Life. Users should consider upgrading to a modern switch.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-24498 has a medium severity due to the risk of exposing sensitive configuration data.
To fix CVE-2023-24498, update your Netgear Prosafe FS726TP Firmware to the latest version that addresses this vulnerability.
CVE-2023-24498 affects the web server of the Netgear Prosafe FS726TP Firmware.
CVE-2023-24498 may expose the configuration page, including the switch password in clear text.
Yes, CVE-2023-24498 indicates that the authentication process does not properly verify user identities.