logo

Netgear WNR614 flaws allow device takeover, no fix available

ID: 62bf1ead-8e96-52c3-b828-222c3bd49ba9

STIX ID: report--62bf1ead-8e96-52c3-b828-222c3bd49ba9

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-06-10

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Researchers at RedFox Security disclosed six vulnerabilities in the Netgear WNR614 N300 router (CVE-2024-36787, CVE-2024-36788, CVE-2024-36789, CVE-2024-36790, CVE-2024-36792, CVE-2024-36795) that allow authentication bypass, exposure of credentials (including plaintext storage and WPS PIN leakage), weak password acceptance, insecure cookie handling, and insecure firmware permissions; the device is end-of-life and Netgear is not expected to provide fixes, so users are advised to apply mitigations or replace the router.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.