peter bassill · operator
$ cve CVE-2013-4775 JSON

CVE-2013-4775 EXPLOIT

7.8
HIGH · CVSS 2.0 · EPSS 15% (pctl 97)

Patch early

A public exploit exists.

Description

NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and GS728TXS with firmware 6.1.0.12 allows remote attackers to read encrypted administrator credentials and other startup configurations via a direct request to filesystem/startup-config.

Scoring

CVSS7.8 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
EPSS14.96% — more likely to be exploited than 97% of all CVEs
WeaknessCWE-200
On CISA KEVno
Public exploityes
Published2013-12-19
Last modified2026-06-16

Affected (11)

VendorProduct
netgearprosafe firmware
netgearprosafe gs510tp
netgearprosafe gs724t
netgearprosafe gs725ts
netgearprosafe gs728tps
netgearprosafe gs728ts
netgearprosafe gs728txs
netgearprosafe gs748t
netgearprosafe gs752tps
netgearprosafe gs752txs
netgearprosafe s716t

Public exploits

SourceTitleDate
exploit-dbNetgear ProSafe - Information Disclosure2013-08-22

References

→ the Explorer  ·  watch your stack  ·  NVD