ZeroHour

CVE-2021-20174

CVSS 3.1
7.5 high
EPSS
<1%p46
Published
()
Modified
Description

Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the web interface. By default, all communication to/from the device's web interface is sent via HTTP, which causes potentially sensitive information (such as usernames and passwords) to be transmitted in cleartext.

Vendors
netgear
Products
r6700 firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news