netgear WNDR4700 Security Vulnerabilities

5 Vulnerabilities
Description

NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.

Impacted versions:

Base Score: 0.0, Severity: NA, ID: CVE-2013-3071, Last Modified: 2020-01-28T21:15:00Z

References

Advisory

NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash).

Impacted versions:

Base Score: 0.0, Severity: NA, ID: CVE-2013-3074, Last Modified: 2020-01-28T21:15:00Z

References

Advisory

An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.

Impacted versions:

Base Score: 0.0, Severity: NA, ID: CVE-2013-3070, Last Modified: 2019-11-14T19:34:00Z

References

Advisory

An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that when visited by any user, authenticated or not, causes the router to no longer require a password to access the web administration portal.

Impacted versions:

Base Score: 0.0, Severity: NA, ID: CVE-2013-3072, Last Modified: 2019-11-14T19:34:00Z

References

Advisory

A Symlink Traversal vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34.

Impacted versions:

Base Score: 0.0, Severity: NA, ID: CVE-2013-3073, Last Modified: 2019-11-14T19:34:00Z

References

Advisory
Free Home-Networking Courses, tutorials and security checklists

USAGE: Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.