Some hackers could use critical firmware vulnerabilities discovered by Microsoft in some NETGEAR routers as a stepping stone to move laterally within corporate networks.

See also: WordPress plugin bugs: Hackers can register as site admins
The security flaws affect DGN2200v1 series routers running firmware versions prior to version 1.0.60 and are compatible with all major DSL internet service providers.
They allow unauthorized attackers to access the management pages of unpatched routers via authentication bypass, gain access to secrets stored on the device, and obtain stored router credentials using a cryptographic side-channel attack.
The three bugs “can compromise the security of a network – opening the floodgates for attackers to roam throughout an entire organization,” explains Jonathan Bar Or of the Microsoft 365 Defender Research Team.
The security issues were discovered by Microsoft researchers while testing Microsoft Defender for new fingerprinting capabilities for new device discovery, after they noticed that the management port of a DGN2200v1 router was accessing another device on the network.
See also: Amazon: Global competition to find/fix 1 million software bugs
The vulnerabilities were patched by NETGEAR
NETGEAR has patched the vulnerabilities, with CVSS scores ranging from high to critical severity, and published a security advisory with additional details in December.
To download and install the patched firmware for your NETGEAR router, you need to:
- Visit the NETGEAR Support page.
- Start typing your model number in the search box, then select your model from the drop-down menu once it appears.
- If you don't see a drop-down menu, make sure you entered your model number correctly or select a product category to search for your product model.
- Click Downloads.
- In the Current Versions section, select the download whose title begins with Firmware Version.
- Click Download.
- Follow the instructions in the product user manual, firmware release notes, or product support page to install the new firmware.
See also: Dell SupportAssist: Bugs expose 30 million PCs to attacks
Last year, security researchers also discovered a zero-day vulnerability in 79 Netgear router models that allows remote attackers to take complete control of vulnerable devices.
Information source: bleepingcomputer.com
