CVE-2007-4361

NETGEAR ReadyNAS RAIDiator <4.00b2-p2-T1 - Info Disclosure

Title source: llm
STIX 2.1

Description

NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta creates a default SSH root password derived from the hardware serial number, which makes it easier for remote attackers to guess the password and obtain login access.

References (9)

Core 9
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36011
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/476266/100/0/threaded
Various Sources x_refsource_confirm
http://www.infrant.com/forum/viewtopic.php?t=12249
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26442
Various Sources x_refsource_confirm
http://www.infrant.com/forum/viewtopic.php?t=12313
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/3017
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/36357
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25290

Scores

EPSS 0.0404
EPSS Percentile 88.6%

Details

Status published
Products (2)
netgear/readynas_raidiator 3.01c1-p1
netgear/readynas_raidiator 3.01c1-p6
Published Aug 15, 2007
Tracked Since Feb 18, 2026