CVE-2013-4775

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
19/12/2013
Last modified:
11/04/2025

Description

NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and GS728TXS with firmware 6.1.0.12 allows remote attackers to read encrypted administrator credentials and other startup configurations via a direct request to filesystem/startup-config.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:prosafe_firmware:5.3.0.17:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs725ts:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs728tps:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs728ts:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs752tps:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:prosafe_firmware:*:*:*:*:*:*:*:* 5.4.1.13 (including)
cpe:2.3:o:netgear:prosafe_firmware:5.0.4.4:*:*:*:*:*:*:*
cpe:2.3:o:netgear:prosafe_firmware:5.3.0.17:*:*:*:*:*:*:*
cpe:2.3:o:netgear:prosafe_firmware:5.4.0.6:*:*:*:*:*:*:*
cpe:2.3:o:netgear:prosafe_firmware:5.4.1.10:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs724t:v3:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_s716t:v2:*:*:*:*:*:*:*
cpe:2.3:o:netgear:prosafe_firmware:6.1.0.12:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs728txs:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:prosafe_gs752txs:-:*:*:*:*:*:*:*