NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of NETGEAR ProSAFE Network Management System. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the MyHandlerInterceptor class. The issue results from improper implementation of the authentication mechanism. An attacker can leverage this vulnerability to bypass authentication on the system.
. Was ZDI-CAN-19718.
                
            References
                    Configurations
                    History
                    06 Feb 2025, 18:01
| Type | Values Removed | Values Added | 
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| References | () https://kb.netgear.com/000065707/Security-Advisory-for-Multiple-Vulnerabilities-on-the-ProSAFE-Network-Management-System-PSV-2023-0024-PSV-2023-0025 - Vendor Advisory | |
| References | () https://www.zerodayinitiative.com/advisories/ZDI-23-920/ - Third Party Advisory | |
| CPE | cpe:2.3:a:netgear:prosafe_network_management_system:*:*:*:*:*:*:*:* | |
| First Time | Netgear prosafe Network Management System Netgear | 
21 Nov 2024, 08:12
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://kb.netgear.com/000065707/Security-Advisory-for-Multiple-Vulnerabilities-on-the-ProSAFE-Network-Management-System-PSV-2023-0024-PSV-2023-0025 - | |
| References | () https://www.zerodayinitiative.com/advisories/ZDI-23-920/ - | 
18 Sep 2024, 19:15
| Type | Values Removed | Values Added | 
|---|---|---|
| Summary | 
 | |
| Summary | (en) NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of NETGEAR ProSAFE Network Management System. Authentication is not required to exploit this vulnerability. The specific flaw exists within the MyHandlerInterceptor class. The issue results from improper implementation of the authentication mechanism. An attacker can leverage this vulnerability to bypass authentication on the system. . Was ZDI-CAN-19718. | 
03 May 2024, 02:15
| Type | Values Removed | Values Added | 
|---|---|---|
| New CVE | 
Information
                Published : 2024-05-03 02:15
Updated : 2025-02-06 18:01
NVD link : CVE-2023-38096
Mitre link : CVE-2023-38096
CVE.ORG link : CVE-2023-38096
JSON object : View
Products Affected
                netgear
- prosafe_network_management_system
CWE
                