EIP-2026-101869
PRE-CVENetgear ReadyNAS LAN /dbbroker 6.2.4 - Credential Disclosure
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101869. PoCs published by St0rn.
AI-analyzed exploit summary This Python script exploits a credential stealing vulnerability in NETGEAR ReadyNAS devices by sniffing network traffic for HTTP POST requests to the /dbbroker endpoint, extracting Base64-encoded credentials from the Authorization header. It requires network access to monitor traffic destined for the target NAS device.
Description
Netgear ReadyNAS LAN /dbbroker 6.2.4 - Credential Disclosure
Exploits (1)
This Python script exploits a credential stealing vulnerability in NETGEAR ReadyNAS devices by sniffing network traffic for HTTP POST requests to the /dbbroker endpoint, extracting Base64-encoded credentials from the Authorization header. It requires network access to monitor traffic destined for the target NAS device.