Netgear Vulnerabilities Lead to Credentials Leak, Privilege Escalation

Security firm Flashpoint has reported that vulnerabilities in the NMS300 ProSAFE network management system made by networking company Netgear enable cyber attackers to retrieve cleartext credentials and escalate privileges. Flashpoint has said that customers should consider restricting untrusted access systems running the product and that it failed to report the vulnerability to Netgear after the latter could not provide a security contact.