Cleartext Transmission of Sensitive Information in Netgear Nighthawk R6700 Version 1.0.4.120

Cleartext Transmission of Sensitive Information in Netgear Nighthawk R6700 Version 1.0.4.120

CVE-2021-20174 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the web interface. By default, all communication to/from the device's web interface is sent via HTTP, which causes potentially sensitive information (such as usernames and passwords) to be transmitted in cleartext.

Learn more about our Web App Pen Testing.