Vulnerability index

Browse CVEs

287 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2020-28373 upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0… R6400v2 Firmware Mitigation only Fix from $1,9502020-11-09 MEDIUM 6.5 CVE-2020-28041 The SIP ALG implementation on NETGEAR Nighthawk R7000 1.0.9.64_10.2.64 devices allows remote attackers to communicate with arbitrary TCP and UDP serv… Nighthawk R7000 Firmware No fix yet Fix from $1,6002020-11-02 HIGH 8.8 CVE-2020-15416EPSS 6% This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. A… R6700 Firmware Mitigation only Fix from $1,9502020-07-28 MEDIUM 6.3 CVE-2020-15417 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. … R6700 Firmware Mitigation only Fix from $1,6002020-07-28 HIGH 8.8 CVE-2020-10929 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. … R6700 Firmware Mitigation only Fix from $1,9502020-07-28 HIGH 8.4 CVE-2020-10928 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. … R6700 Firmware Mitigation only Fix from $1,9502020-07-28 MEDIUM 6.5 CVE-2020-10930 This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 r… R6700 Firmware Mitigation only Fix from $1,6002020-07-28 HIGH 8.8 CVE-2020-10923EPSS 85% This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. A… R6700 Firmware Mitigation only Fix from $1,9502020-07-28 HIGH 8.8 CVE-2020-10924EPSS 87% This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. A… R6700 Firmware Mitigation only Fix from $1,9502020-07-28 HIGH 8.8 CVE-2020-10925 This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R6700… R6700 Firmware Mitigation only Fix from $1,9502020-07-28 HIGH 8.8 CVE-2020-10926 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. … R6700 Firmware Mitigation only Fix from $1,9502020-07-28 HIGH 8.8 CVE-2020-10927 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. … R6700 Firmware Mitigation only Fix from $1,9502020-07-28 MEDIUM 5.9 CVE-2020-13245 Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibl… R6120 Firmware No fix yet Fix from $1,6002020-05-28 MEDIUM 6.8 CVE-2019-20718 Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v… D6220 Firmware Mitigation only Fix from $1,6002020-04-16 HIGH 7.5 CVE-2020-11792 NETGEAR R8900, R9000, RAX120, and XR700 devices before 2020-01-20 are affected by Transport Layer Security (TLS) certificate private key disclosure. R8900 Firmware Mitigation only Fix from $1,9502020-04-15 HIGH 7.2 CVE-2016-11022 NETGEAR Prosafe WC9500 5.1.0.17, WC7600 5.1.0.17, and WC7520 2.5.0.35 devices allow a remote attacker to execute code with root privileges via shell … Prosafe Wc9500 Firmware No fix yet Fix from $1,9502020-03-23 CRITICAL 9.8 CVE-2019-13394 The Voo branded NETGEAR CG3700b custom firmware V2.02.03 uses HTTP Basic Authentication over cleartext HTTP. Cg3700b Firmware No fix yet Fix from $2,3002020-03-13 HIGH 8.8 CVE-2019-13395 The Voo branded NETGEAR CG3700b custom firmware V2.02.03 allows CSRF against all /goform/ URIs. An attacker can modify all settings including WEP/WPA… Cg3700b Firmware No fix yet Fix from $1,9502020-03-13 HIGH 7.5 CVE-2019-13393 The Voo branded NETGEAR CG3700b custom firmware V2.02.03 uses the same default 8 character passphrase for the administrative console and the WPA2 pre… Cg3700b Firmware No fix yet Fix from $1,9502020-03-13 CRITICAL 9.8 CVE-2019-20488 An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the web management interface (setup.cgi) are vulnerable to com… Wnr1000 Firmware No fix yet Fix from $2,3002020-03-02 CRITICAL 9.8 CVE-2019-20489 An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. The web management interface (setup.cgi) has an authentication bypass and other proble… Wnr1000 Firmware Mitigation only Fix from $2,3002020-03-02 HIGH 8.8 CVE-2019-20487 An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple actions within the WNR1000V4 web management console are vulnerable to an unau… Wnr1000 Firmware Mitigation only Fix from $1,9502020-03-02 MEDIUM 6.1 CVE-2019-20486 An issue was discovered on NETGEAR WNR1000V4 1.1.0.54 devices. Multiple pages (setup.cgi and adv_index.htm) within the web management console are vul… Wnr1000 Firmware No fix yet Fix from $1,6002020-03-02 CRITICAL 9.4 CVE-2019-17137 This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR AC1200 R6220 Firmware version 1.1.… Ac1200 R6220 Firmware Mitigation only Fix from $2,3002020-02-10 MEDIUM 6.5 CVE-2012-6341 An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previo… Wgr614v9 Firmware No fix yet Fix from $1,6002020-02-06 CRITICAL 9.8 CVE-2013-3071 NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass. Wndr4700 Firmware No fix yet Fix from $2,3002020-01-28 HIGH 7.5 CVE-2013-3074 NetGear WNDR4700 Media Server devices with firmware 1.0.0.34 allow remote attackers to cause a denial of service (device crash). Wndr4700 Firmware No fix yet Fix from $1,9502020-01-28 CRITICAL 9.8 CVE-2013-3072 An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that w… Wndr4700 Firmware No fix yet Fix from $2,3002019-11-14 MEDIUM 6.5 CVE-2013-3516 NETGEAR WNR3500U and WNR3500L routers uses form tokens abased solely on router's current date and time, which allows attackers to guess the CSRF toke… Wnr3500u Firmware No fix yet Fix from $1,6002019-11-13 MEDIUM 5.4 CVE-2013-3517 Cross-site scripting (XSS) vulnerability in NETGEAR WNR3500U and WNR3500L. Wnr3500u Firmware No fix yet Fix from $1,6002019-11-13