cbcvebase.
CVE-2022-47209
published 2022-12-16

CVE-2022-47209: A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for this account is “support” and cannot be…

PriorityP346high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
0.48%
38.3th percentile
A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for this account is “support” and cannot be changed by a user via any normally accessible means.

Affected

1 ranges
VendorProductVersion rangeFixed in
netgearrax30_firmware< 1.0.9.901.0.9.90
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.