PT-2024-4355 · NetGear · Netgear Wnr614 N300

CVE-2024-36792

·

Published

2024-06-07

·

Updated

2024-07-03

CVSS v3.1

8.2

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Netgear WNR614 N300 version JNR1010V2/N300-V1.1.0.54 1.0.1
Description The issue is related to the implementation of the WPS in the Netgear WNR614 N300 router, which allows attackers to gain access to the router's pin. This can enable a remote attacker to obtain unauthorized access to the router's PIN code.
Recommendations For Netgear WNR614 N300 version JNR1010V2/N300-V1.1.0.54 1.0.1, consider disabling the WPS feature until a patch is available to prevent exploitation. Restrict access to the router's configuration page to minimize the risk of unauthorized access.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-04844
CVE-2024-36792

Affected Products

Netgear Wnr614 N300