CVE-2023-1327

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
14/03/2023
Last modified:
21/03/2023

Description

Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an unauthenticated attacker to gain administrative access to the device's web management interface by resetting the admin password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:rax30_firmware:*:*:*:*:*:*:*:* 1.0.6.74 (excluding)
cpe:2.3:h:netgear:rax30:-:*:*:*:*:*:*:*