Vulnerability index

Browse CVEs

1,134 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Cbr750 Firmware HIGH 8.8
CVE-2021-45505

Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, …

Fix: 3.2.17.12 / 4.6.3.6+
Fix from $1,950 2021-12-26
Cbr750 Firmware HIGH 8.8
CVE-2021-45506

Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, …

Fix: 3.2.17.12 / 4.6.3.6+
Fix from $1,950 2021-12-26
Xr1000 Firmware HIGH 8.8
CVE-2021-45510

NETGEAR XR1000 devices before 1.0.0.58 are affected by authentication bypass.

Fix: 1.0.0.58+
Fix from $1,950 2021-12-26
Xr1000 Firmware HIGH 8.8
CVE-2021-45514

NETGEAR XR1000 devices before 1.0.0.58 are affected by command injection by an unauthenticated attacker.

Fix: 1.0.0.58+
Fix from $1,950 2021-12-26
Rbk352 Firmware HIGH 8.8
CVE-2021-45520

Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.

Fix: 4.4.0.10+
Fix from $1,950 2021-12-26
Xr1000 Firmware HIGH 8.8
CVE-2021-45522

NETGEAR XR1000 devices before 1.0.0.58 are affected by a hardcoded password.

Fix: 1.0.0.58+
Fix from $1,950 2021-12-26
Ex7500 Firmware MEDIUM 6.5
CVE-2021-45515

Certain NETGEAR devices are affected by denial of service. This affects EX7500 before 1.0.0.72, RBS40V before 2.6.1.4, RBW30 before 2.6.1.4, RBRE960 …

Fix: 1.0.0.72 / 2.6.1.4+
Fix from $1,600 2021-12-26
Xr1000 Firmware MEDIUM 6.5
CVE-2021-45517

NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service.

Fix: 1.0.0.58+
Fix from $1,600 2021-12-26
Xr1000 Firmware MEDIUM 6.5
CVE-2021-45518

NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service.

Fix: 1.0.0.58+
Fix from $1,600 2021-12-26
Xr1000 Firmware MEDIUM 6.5
CVE-2021-45519

NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service.

Fix: 1.0.0.58+
Fix from $1,600 2021-12-26
Rbk352 Firmware MEDIUM 6.5
CVE-2021-45521

Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10.

Fix: 4.4.0.10+
Fix from $1,600 2021-12-26
D7000 Firmware CRITICAL 9.8
CVE-2021-45495

NETGEAR D7000 devices before 1.0.1.68 are affected by authentication bypass.

Fix: 1.0.1.68+
Fix from $2,300 2021-12-26
D7000 Firmware CRITICAL 9.8
CVE-2021-45496

NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass.

Fix: 1.0.1.82+
Fix from $2,300 2021-12-26
D7000 Firmware CRITICAL 9.8
CVE-2021-45497

NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass.

Fix: 1.0.1.82+
Fix from $2,300 2021-12-26
R6700v2 Firmware CRITICAL 9.8
CVE-2021-45498

NETGEAR R6700v2 devices before 1.2.0.88 are affected by authentication bypass.

Fix: 1.2.0.88+
Fix from $2,300 2021-12-26
Ac2400 Firmware CRITICAL 9.8
CVE-2021-45501

Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000 before 1.0.1.82, R6…

Fix: 1.0.0.52 / 1.0.0.80+
Fix from $2,300 2021-12-26
R6900p Firmware HIGH 8.8
CVE-2021-45499

Certain NETGEAR devices are affected by authentication bypass. This affects R6900P before 1.3.3.140, R7000P before 1.3.3.140, R7900P before 1.4.2.84,…

Fix: 1.0.3.106 / 1.3.3.140+
Fix from $1,950 2021-12-26
R7000p Firmware HIGH 8.8
CVE-2021-45500

Certain NETGEAR devices are affected by authentication bypass. This affects R7000P before 1.3.3.140 and R8000 before 1.0.4.68.

Fix: 1.0.4.68 / 1.3.3.140+
Fix from $1,950 2021-12-26
Cbr750 Firmware HIGH 8.8
CVE-2021-45502

Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBK752 before 3.2.17.12, …

Fix: 3.2.17.12 / 4.6.3.6+
Fix from $1,950 2021-12-26
Rax35 Firmware HIGH 7.5
CVE-2021-45493

Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RAX35 before 1.0.4.102, RAX38 before 1.0.4.102, and RA…

Fix: 1.0.4.102+
Fix from $1,950 2021-12-26
Rax35 Firmware HIGH 7.1
CVE-2021-41449

A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to g…

Fix: 1.0.4.102+
Fix from $1,950 2021-12-09
Ex3700 Firmware HIGH 8.8
CVE-2021-34991EPSS 6%

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400v2 1.0.4.106_10.0.80 routers…

Fix: 1.0.0.66 / 1.0.0.94+
Fix from $1,950 2021-11-15
R6400v2 Firmware HIGH 8.1
CVE-2021-40847EPSS 10%

The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execution as root…

No fix yet
Fix from $1,950 2021-09-21
R6020 Firmware HIGH 7.2
CVE-2021-41383

setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field.

No fix yet
Fix from $1,950 2021-09-17
Gc108p Firmware HIGH 8.8
CVE-2021-41314EPSS 14%

Certain NETGEAR smart switches are affected by a \n injection in the web UI's password field, which - due to several faulty aspects of the authentica…

Fix: 1.0.3.2 / 1.0.5.3+
Fix from $1,950 2021-09-16
Gc108p Firmware HIGH 7.1
CVE-2021-40867

Certain NETGEAR smart switches are affected by an authentication hijacking race-condition vulnerability by an unauthenticated attacker who uses the s…

Fix: 1.0.3.2 / 1.0.5.3+
Fix from $1,950 2021-09-13
Gc108p Firmware HIGH 8.8
CVE-2021-40866

Certain NETGEAR smart switches are affected by a remote admin password change by an unauthenticated attacker via the (disabled by default) /sqfs/bin/…

Fix: 1.0.3.2 / 1.0.5.3+
Fix from $1,950 2021-09-13
D8500 Firmware HIGH 8.8
CVE-2021-38539

Certain NETGEAR devices are affected by privilege escalation. This affects D8500 before 1.0.3.44, R6400v2 before 1.0.2.66, R6700 before 1.0.2.6, R670…

Fix: 1.0.0.50 / 1.0.2.4+
Fix from $1,950 2021-08-11
D7800 Firmware MEDIUM 6.1
CVE-2021-38538

Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7800 before 1.0.2.68, R8900 before 1.0.4.26, R9000 before 1.…

Fix: 1.0.0.78 / 1.0.1.56+
Fix from $1,600 2021-08-11
Rax40 Firmware MEDIUM 5.4
CVE-2021-38533

NETGEAR RAX40 devices before 1.0.3.64 are affected by stored XSS.

Fix: 1.0.3.64+
Fix from $1,600 2021-08-11