ZDI-21-1275: NETGEAR Multiple Routers httpd Missing Authentication for Critical Function Information Disclosure Vulnerability
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of multiple NETGEAR routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the httpd service, which listens on TCP port 80 by default. The issue results from the lack of authentication prior to allowing access to system configuration information. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-21-1275?
The severity of ZDI-21-1275 is critical, as it allows unauthorized access to sensitive information.
How do I fix ZDI-21-1275?
To fix ZDI-21-1275, update your NETGEAR router firmware to the latest version provided by NETGEAR.
Who is affected by the ZDI-21-1275 vulnerability?
The ZDI-21-1275 vulnerability affects multiple models of NETGEAR routers.
What type of attacks can ZDI-21-1275 enable?
ZDI-21-1275 enables network-adjacent attackers to disclose sensitive information without authentication.
What does the ZDI-21-1275 vulnerability target?
ZDI-21-1275 specifically targets the httpd service that operates on TCP port 80.