× Introducing the Orbi 970 Series Mesh System with WiFi 7 technology. For more information visit the NETGEAR Press Room.
Nighthawk M6 Pro Unlocked Hotspot 5G mmWave
Reply

Netgear Nighthawk M1 vulnerability

lenl
Initiate

Netgear Nighthawk M1 vulnerability

When will Netgear release a solution / fix for the Netgear Nighthawk M1 vulnerability as mentioned in the link below ?

VulDB 140070 · CVE-2019-14527
Netgear Nighthawk M1 prior 12.06.03 Web Interface System Command privilege escalation
https://vuldb.com/?id.140070

Model: MR1100|Nighthawk M1 Mobile Router
Message 1 of 6

Accepted Solutions
Blanca_O
NETGEAR Moderator

Re: Netgear Nighthawk M1 vulnerability

Hi, All, 

 

This has been brought up already to engineers. No security vulnerability has been found on our test. 

 

Please check reference link: 

https://kb.netgear.com/000061155/Security-Advisory-for-Firmware-Encryption-on-MR1100-PSV-2019-0055

 

Regards, 
Blanca 
Community Team

 

 

View solution in original post

Message 4 of 6

All Replies
Oxygene
Apprentice

Re: Netgear Nighthawk M1 vulnerability

Upgrading to version 12.06.03 eliminates this vulnerability.

Message 2 of 6
lenl
Initiate

Re: Netgear Nighthawk M1 vulnerability

But the Nighthawk M1 says there is no new firmware update Smiley Sad
Is there a way to manual download new firmware ?

Message 3 of 6
Blanca_O
NETGEAR Moderator

Re: Netgear Nighthawk M1 vulnerability

Hi, All, 

 

This has been brought up already to engineers. No security vulnerability has been found on our test. 

 

Please check reference link: 

https://kb.netgear.com/000061155/Security-Advisory-for-Firmware-Encryption-on-MR1100-PSV-2019-0055

 

Regards, 
Blanca 
Community Team

 

 

Message 4 of 6
sena71
Tutor

Re: Netgear Nighthawk M1 vulnerability

lmaooo are you sure about that? then explain to me how im able to force a telnet session with the internal linux/busybox OS? smh you guys couldn't even be bothered to change the root password from the default "oelinux123"

Message 5 of 6
sena71
Tutor

Re: Netgear Nighthawk M1 vulnerability

https://imgur.com/a/Q0RJwNb

So tell me, are you absolutlely 100% sure there is no exploit?

Message 6 of 6
Top Contributors
Discussion stats
  • 5 replies
  • 3257 views
  • 1 kudo
  • 4 in conversation
Announcements

Orbi WiFi 7