CVE-2021-45077

Netgear Nighthawk R6700 version 1.0.4.120 stores sensitive information in plaintext. All usernames and passwords for the device's associated services are stored in plaintext on the device. For example, the admin password is stored in plaintext in the primary configuration file on the device.
References
Link Resource
https://www.tenable.com/security/research/tra-2021-57 Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:r6700_firmware:1.0.4.120:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r6700:-:*:*:*:*:*:*:*

History

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE CWE-522 CWE-312

11 Jan 2022, 17:07

Type Values Removed Values Added
References (MISC) https://www.tenable.com/security/research/tra-2021-57 - (MISC) https://www.tenable.com/security/research/tra-2021-57 - Third Party Advisory
First Time Netgear r6700
Netgear
Netgear r6700 Firmware
CWE CWE-522
CPE cpe:2.3:h:netgear:r6700:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:r6700_firmware:1.0.4.120:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5

30 Dec 2021, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-12-30 22:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-45077

Mitre link : CVE-2021-45077

CVE.ORG link : CVE-2021-45077


JSON object : View

Products Affected

netgear

  • r6700
  • r6700_firmware
CWE
CWE-312

Cleartext Storage of Sensitive Information