ID

VAR-201401-0728


TITLE

Netgear DGN2000 Telnet Backdoor Unauthorized Access Vulnerability

Trust: 0.9

sources: CNVD: CNVD-2014-00513 // BID: 65007

DESCRIPTION

Netgear DGN2000 is a wireless router product. The Telnet service part monitored on TCP port 32764 of Netgear DGN2000 product is not archived, and there are security vulnerabilities. After successful exploitation, it can cause execution of arbitrary OS commands. Netgear DGN2000 is prone to an unauthorized-access vulnerability. This may aid in further attacks

Trust: 0.81

sources: CNVD: CNVD-2014-00513 // BID: 65007

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2014-00513

AFFECTED PRODUCTS

vendor:netgearmodel:dgn2000scope: - version: -

Trust: 0.6

vendor:netgearmodel:dgn2000scope:eqversion:0

Trust: 0.3

sources: CNVD: CNVD-2014-00513 // BID: 65007

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2014-00513
value: HIGH

Trust: 0.6

CNVD: CNVD-2014-00513
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2014-00513

THREAT TYPE

network

Trust: 0.3

sources: BID: 65007

TYPE

Design Error

Trust: 0.3

sources: BID: 65007

EXTERNAL IDS

db:BIDid:65007

Trust: 0.9

db:SECUNIAid:56326

Trust: 0.6

db:CNVDid:CNVD-2014-00513

Trust: 0.6

sources: CNVD: CNVD-2014-00513 // BID: 65007

REFERENCES

url:http://secunia.com/advisories/56326/

Trust: 0.6

url:http://www.downloads.netgear.com/files/gdc/dgn2000/dgn2000_ds_18july08.pdf

Trust: 0.3

url:https://github.com/elvanderb/tcp-32764

Trust: 0.3

sources: CNVD: CNVD-2014-00513 // BID: 65007

CREDITS

Eloi Vanderbeken

Trust: 0.3

sources: BID: 65007

SOURCES

db:CNVDid:CNVD-2014-00513
db:BIDid:65007

LAST UPDATE DATE

2022-05-17T01:41:22.022000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2014-00513date:2020-03-10T00:00:00
db:BIDid:65007date:2014-01-04T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2014-00513date:2014-01-22T00:00:00
db:BIDid:65007date:2014-01-04T00:00:00