Netgear: & genie = 1 in the URL and you have access to each router

If you use one of its routers στο σπίτι σας ή κάπου αλλού, μάλλον ήρθε η ώρα να αναβαθμίσετε το firmware… H κατασκευάστρια εταιρεία μόλις κυκλοφόρησε ένα τσουνάμι από patches για πάρα πολλά which constructs and are affected.

Vulnerabilities were identified by Martin Rakhmanov Trustwave, The researcher spent more than a year chasing vulnerabilities in Netgear's firmware.Netgear

Updates have been released, and you will be able to install them as soon as possible before bots and botnets start using them. Instructions on how to apply the updates are included in company websites.

Let's see what happened:

Περίπου 17 routers της Netgear διαθέτουν απομακρυσμένη παράκαμψη ταυτότητας μέσω URL. Αυτό σημαίνει ότι κάθε κακόβουλος χρήστης ή τα κακόβουλα προγράμματα μπορούν να αποκτήσουν πρόσβαση στη σελίδα διαμόρφωσης της ς σου.

The most important thing is that anyone can gain access, without needing someone access. How;

By simply adding the characters & genie = 1 at the end of the URL.

So bad news for any portal that has remote access enabled, as anyone on the internet can take advantage of the vulnerability and take ownership of the router. This can change DNS settings, redirect browsers to malicious sites and more.

Do not wait: Directly upgrade your Netgear firmware.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).