CVE-2023-49693

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
29/11/2023
Last modified:
05/12/2023

Description

<br /> NETGEAR ProSAFE Network Management System has Java Debug Wire Protocol (JDWP) listening on port 11611 and it is remotely accessible by unauthenticated users, allowing attackers to execute arbitrary code.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:netgear:prosafe_network_management_system:*:*:*:*:*:*:*:* 1.7.0.34 (excluding)