EXPOSURES › CVE-2017-5521
CVE-2017-5521
HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
⚡ RCE
⌖ EXPLOITED IN THE WILD
SHAME 72/100
exploited-in-wildunpatched
NETGEAR devices exposed admin passwords through crafted requests
NETGEAR's multiple devices were found to disclose admin passwords via web management server, leading to potential unauthorized access.
Shame score — High severity, avoidable security flaw leading to potential unauthorized access.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
PLAYERS IMPLICATED
DESCRIPTION
Multiple NETGEAR devices are prone to admin password disclosure via simple crafted requests to the web management server.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.