ZDI-23-914: NETGEAR ProSAFE Network Management System createUser Missing Authorization Privilege Escalation Vulnerability
This vulnerability allows remote attackers to escalate privileges on affected installations of NETGEAR ProSAFE Network Management System. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-914?
ZDI-23-914 is classified as a high-severity vulnerability due to its potential for privilege escalation.
How do I fix ZDI-23-914?
To fix ZDI-23-914, you should update your NETGEAR ProSAFE Network Management System to the latest version provided by the vendor.
Who is affected by ZDI-23-914?
Users of the NETGEAR ProSAFE Network Management System are affected by ZDI-23-914.
Can ZDI-23-914 be exploited without authentication?
No, ZDI-23-914 requires authentication; however, the existing mechanism can be bypassed.
What type of vulnerability is ZDI-23-914?
ZDI-23-914 is a privilege escalation vulnerability that allows remote attackers to gain elevated access.