CVE-2025-4978: Netgear DGND3700 Basic Authentication BRS_top.html improper authentication
A vulnerability, which was classified as very critical, was found in Netgear DGND3700 1.1.00.151.00.15NA. This affects an unknown part of the file /BRStop.html of the component Basic Authentication. The manipulation leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Other products might be affected as well. The vendor was contacted early about this disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4978?
CVE-2025-4978 is classified as very critical due to improper authentication issues.
How do I fix CVE-2025-4978?
To fix CVE-2025-4978, update the firmware of your Netgear DGND3700 to the latest version provided by the vendor.
Can CVE-2025-4978 be exploited remotely?
Yes, CVE-2025-4978 can be exploited remotely, allowing attackers to manipulate authentication.
What components are affected by CVE-2025-4978?
CVE-2025-4978 affects the Basic Authentication component found in the /BRS_top.html file.
Is my Netgear DGND3700 vulnerable to CVE-2025-4978?
If you are using Netgear DGND3700 firmware version 1.1.00.15_1.00.15NA, your device is vulnerable to CVE-2025-4978.