First published: Tue Mar 12 2024(Updated: )
An information leak in the debuginfo.htm component of Netgear CBR40 2.5.0.28, Netgear CBK40 2.5.0.28, and Netgear CBK43 2.5.0.28 allows attackers to obtain sensitive information without any authentication required.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Netgear CBR40 | ||
Netgear CBK40 | ||
Netgear Orbi RBK43 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-28339 is classified as a medium severity vulnerability due to its potential to expose sensitive information without authentication.
To mitigate CVE-2024-28339, update your Netgear CBR40, CBK40, or CBK43 to the latest firmware version provided by Netgear.
CVE-2024-28339 affects the Netgear CBR40, CBK40, and CBK43 running version 2.5.0.28.
CVE-2024-28339 can result in the exposure of sensitive information included in the 'debuginfo.htm' component.
No, CVE-2024-28339 can be exploited without any authentication, making it particularly dangerous.