CVE-2024-57046

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
18/02/2025
Last modified:
07/07/2025

Description

A vulnerability in the Netgear DGN2200 router with firmware version v1.0.0.46 and earlier permits unauthorized individuals to bypass the authentication. When adding "?x=1.gif" to the the requested url, it will be recognized as passing the authentication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:netgear:dgn2200_firmware:*:*:*:*:*:*:*:* 1.0.0.46 (including)
cpe:2.3:h:netgear:dgn2200:-:*:*:*:*:*:*:*