NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of NETGEAR ProSAFE Network Management System. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the MyHandlerInterceptor class. The issue results from improper implementation of the authentication mechanism. An attacker can leverage this vulnerability to bypass authentication on the system.
. Was ZDI-CAN-19718.
References
Configurations
History
06 Feb 2025, 18:01
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo | |
References | () https://kb.netgear.com/000065707/Security-Advisory-for-Multiple-Vulnerabilities-on-the-ProSAFE-Network-Management-System-PSV-2023-0024-PSV-2023-0025 - Vendor Advisory | |
References | () https://www.zerodayinitiative.com/advisories/ZDI-23-920/ - Third Party Advisory | |
CPE | cpe:2.3:a:netgear:prosafe_network_management_system:*:*:*:*:*:*:*:* | |
First Time |
Netgear prosafe Network Management System
Netgear |
21 Nov 2024, 08:12
Type | Values Removed | Values Added |
---|---|---|
References | () https://kb.netgear.com/000065707/Security-Advisory-for-Multiple-Vulnerabilities-on-the-ProSAFE-Network-Management-System-PSV-2023-0024-PSV-2023-0025 - | |
References | () https://www.zerodayinitiative.com/advisories/ZDI-23-920/ - |
18 Sep 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
Summary | (en) NETGEAR ProSAFE Network Management System MyHandlerInterceptor Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of NETGEAR ProSAFE Network Management System. Authentication is not required to exploit this vulnerability. The specific flaw exists within the MyHandlerInterceptor class. The issue results from improper implementation of the authentication mechanism. An attacker can leverage this vulnerability to bypass authentication on the system. . Was ZDI-CAN-19718. |
03 May 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-05-03 02:15
Updated : 2025-02-06 18:01
NVD link : CVE-2023-38096
Mitre link : CVE-2023-38096
CVE.ORG link : CVE-2023-38096
JSON object : View
Products Affected
netgear
- prosafe_network_management_system
CWE