### [CVE-2021-34870](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-34870) ![](https://img.shields.io/static/v1?label=Product&message=XR1000&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=1.0.0.52_1.0.38%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-306%3A%20Missing%20Authentication%20for%20Critical%20Function&color=brightgreen) ### Description This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR XR1000 1.0.0.52_1.0.38 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of SOAP messages. The issue results from a lack of authentication required for a privileged request. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-13325. ### POC #### Reference - https://kb.netgear.com/000063967/Security-Advisory-for-a-Security-Misconfiguration-Vulnerability-on-the-XR1000-PSV-2021-0101 #### Github No PoCs found on GitHub currently.