Netgear DGND3700 Information Disclosure Vulnerability

Vulnerability

An information disclosure vulnerability exists in the Netgear DGND3700 router, specifically in the firmware version 1.1.00.15_1.00.15NA. The vulnerability arises from an unknown function in the file '/BRS_top.html', which can be accessed remotely without authentication. This exposure allows unauthorized users to obtain sensitive device information, such as the router model and firmware version.

Impact

Exploitation of this vulnerability allows unauthorized access to sensitive device information, including the router model and firmware version.

Reproduction

The vulnerability can be reproduced by accessing the '/BRS_top.html' page on a Netgear DGND3700 router running the affected firmware version. This can be done remotely without any authentication, making it accessible to anyone with internet access.

Remediation

It is recommended to apply restrictive firewalling to block unauthorized access to the vulnerable router.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
2.5
exploitability
9.1
remediation
7.9
relevance
0.0
threat
6.4
urgency
2.9
incentive
9.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.