NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
azinnc
May 11, 2017Follower
Prosafe M4100-26G TLS 1.2 Not Available and Weak Cipher Suites
Our vulnerability scanning shows that our switch's management over HTTPS only has TLS 1.0. In today's world, everything should be at TLS 1.2, so it is causing our vulnerability scanning to report it...
bknfhds8f
Mar 28, 2018Follower
Dear Netgear, it is absolutely unbelieveable that 9 months on this vulnerability is still present in all of the products we tested. Any and all regulated operating environments require the deprication of TLS1.0 especially when used in combination with the weak cyphers which can facilitate the Beast attack. Please patch this on all versions of your firmware ASAP.
Because our systems are set to not allow insecure ciphers and TLS1.0 we cannot even configure your devices via their web interfaces.