CVE-2022-47209

CVSS V2 None CVSS V3 None
Description
A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for this account is “support” and cannot be changed by a user via any normally accessible means.
Overview
  • CVE ID
  • CVE-2022-47209
  • Assigner
  • vulnreport@tenable.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2022-12-16T20:15:08
  • Last Modified Date
  • 2022-12-27T20:18:00
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:netgear:rax30_firmware:*:*:*:*:*:*:*:* 1 OR 1.0.9.90
cpe:2.3:h:netgear:rax30:-:*:*:*:*:*:*:* 0 OR
References
History
Created Old Value New Value Data Type Notes
2022-12-18 09:31:31 Added to TrackCVE
2022-12-21 07:02:59 2022-12-16T20:15:08.940 2022-12-16T20:15:08 CVE Published Date updated
2022-12-21 07:02:59 2022-12-16T22:03:40 CVE Modified Date updated
2022-12-21 07:02:59 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2022-12-27 21:15:20 2022-12-27T20:18:00 CVE Modified Date updated
2022-12-27 21:15:20 Undergoing Analysis Analyzed Vulnerability Status updated
2022-12-27 21:15:21 Weakness Enumeration new
2022-12-27 21:15:22 CPE Information updated