CVE-2024-5245Use of Default Credentials in Netgear Prosafe Network Management System

Severity
7.8HIGHNVD
EPSS
0.2%
top 61.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 23

Description

NETGEAR ProSAFE Network Management System Default Credentials Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of NETGEAR ProSAFE Network Management System. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the product installer. The issue results from the use of default MySQL credentials. An attac

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

1
CVEList
NETGEAR ProSAFE Network Management System Default Credentials Local Privilege Escalation Vulnerability2024-05-23
CVE-2024-5245 — Use of Default Credentials in Netgear | cvebase