CVE-2015-8289
20.06.2016, 01:59
The password-recovery feature on NETGEAR D3600 devices with firmware 1.0.0.49 and D6000 devices with firmware 1.0.0.49 and earlier allows remote attackers to discover the cleartext administrator password by reading the cgi-bin/passrec.asp HTML source code.Enginsight
Vendor | Product | Version |
---|---|---|
netgear | d3600_firmware | 1.0.0.49 |
netgear | d6000_firmware | 𝑥 ≤ 1.0.0.49 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration