Description
The NETGEAR WNR2000v5 router leaks its serial number when performing a request to the /BRS_netgear_success.html URI. This serial number allows a user to obtain the administrator username and password, when used in combination with the CVE-2016-10176 vulnerability that allows resetting the answers to the password-recovery questions.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T03:14:42.168Z
Reserved: 2017-01-29T00:00:00.000Z
Link: CVE-2016-10175
No data.
Status : Modified
Published: 2017-01-30T04:59:00.203
Modified: 2026-05-13T00:24:29.033
Link: CVE-2016-10175
No data.
OpenCVE Enrichment
No data.
Weaknesses