Security Advisory

CVE-2021-45732

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-30 21:31:20
Last updated 2024-08-04 04:47:02
Assigner tenable
State PUBLISHED

Description

Netgear Nighthawk R6700 version 1.0.4.120 makes use of a hardcoded credential. It does not appear that normal users are intended to be able to manipulate configuration backups due to the fact that they are encrypted/obfuscated. By extracting the configuration using readily available public tools, a user can reconfigure settings not intended to be manipulated, repackage the configuration, and restore a backup causing these settings to be changed.