CVE-2017-5521 is a password disclosure vulnerability affecting numerous NETGEAR router models, including the R8500, R8300, and R7000 series. This flaw allows an unauthenticated attacker to obtain the administrator password through crafted web management requests, particularly when password recovery is not enabled or has been previously configured. The vulnerability carries a CVSS score of 8.1 (High), indicating a critical risk. It can be exploited remotely if remote management is enabled, or locally via LAN/WLAN, with high impact on confidentiality, integrity, and availability. The attack complexity is low, as it does not require user interaction. This CVE is actively exploited, listed in CISA's KEV catalog, and has readily available exploit modules in Metasploit and Nuclei, as well as on ExploitDB. It has garnered significant community discussion and media coverage, highlighting its widespread impact and the urgency for patching.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.0.1.56_1.0.43CPE matchmatch criteria | cpe:2.3:o:netgear:r6200_firmware:1.0.1.56_1.0.43:*:*:*:*:*:*:* | ||
1.0.2.78_1.0.58CPE matchmatch criteria | cpe:2.3:o:netgear:r6300_firmware:1.0.2.78_1.0.58:*:*:*:*:*:*:* | ||
1.0.0.36CPE matchmatch criteria | cpe:2.3:o:netgear:vegn2610_firmware:1.0.0.36:*:*:*:*:*:*:* | ||
1.0.0.34_10.0.16CPE matchmatch criteria | cpe:2.3:o:netgear:ac1450_firmware:1.0.0.34_10.0.16:*:*:*:*:*:*:* | ||
1.0.2.68_60.0.93CPE matchmatch criteria | cpe:2.3:o:netgear:wnr1000v3_firmware:1.0.2.68_60.0.93:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.