PT-2025-22134 · NetGear · Netgear Dgnd3700

153528990

·

Published

2025-05-20

·

Updated

2025-05-20

·

CVE-2025-4977

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions Netgear DGND3700 version 1.1.00.15 1.00.15NA
Description A vulnerability has been found in the Netgear DGND3700, affecting some unknown functionality of the file /BRS top.html. The manipulation leads to information disclosure. The attack may be launched remotely. Other products might be affected as well. The vendor was contacted early about this disclosure.
Recommendations For Netgear DGND3700 version 1.1.00.15 1.00.15NA, as a temporary workaround, consider restricting access to the file /BRS top.html until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Access Control

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2025-09968
CVE-2025-4977

Affected Products

Netgear Dgnd3700