Total vulnerabilities in the database
The password-recovery feature on NETGEAR D3600 devices with firmware 1.0.0.49 and D6000 devices with firmware 1.0.0.49 and earlier allows remote attackers to discover the cleartext administrator password by reading the cgi-bin/passrec.asp HTML source code.
Software | From | Fixed in |
---|---|---|
netgear / d3600_firmware | 1.0.0.49 | 1.0.0.49.x |
netgear / d6000_firmware | - | 1.0.0.49.x |