CISA Known Exploited Vulnerability

CVE-2017-5521

NETGEAR · Multiple Devices

NETGEAR Multiple Devices Exposure of Sensitive Information Vulnerability

Date added
BOD 22-01 due date
CWE CWE-200
Ransomware Unknown

CISA description

Multiple NETGEAR devices are prone to admin password disclosure via simple crafted requests to the web management server.

Required action

Apply updates per vendor instructions. If the affected device has since entered end-of-life, it should be disconnected if still in use.