Vulnerability index

Browse CVEs

1,134 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2021-45505 Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, … Cbr750 Firmware 3.2.17.12 / 4.6.3.6+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45506 Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBR750 before 3.2.17.12, … Cbr750 Firmware 3.2.17.12 / 4.6.3.6+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45510 NETGEAR XR1000 devices before 1.0.0.58 are affected by authentication bypass. Xr1000 Firmware 1.0.0.58+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45514 NETGEAR XR1000 devices before 1.0.0.58 are affected by command injection by an unauthenticated attacker. Xr1000 Firmware 1.0.0.58+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45520 Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10. Rbk352 Firmware 4.4.0.10+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45522 NETGEAR XR1000 devices before 1.0.0.58 are affected by a hardcoded password. Xr1000 Firmware 1.0.0.58+ Fix from $1,9502021-12-26 MEDIUM 6.5 CVE-2021-45515 Certain NETGEAR devices are affected by denial of service. This affects EX7500 before 1.0.0.72, RBS40V before 2.6.1.4, RBW30 before 2.6.1.4, RBRE960 … Ex7500 Firmware 1.0.0.72 / 2.6.1.4+ Fix from $1,6002021-12-26 MEDIUM 6.5 CVE-2021-45517 NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service. Xr1000 Firmware 1.0.0.58+ Fix from $1,6002021-12-26 MEDIUM 6.5 CVE-2021-45518 NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service. Xr1000 Firmware 1.0.0.58+ Fix from $1,6002021-12-26 MEDIUM 6.5 CVE-2021-45519 NETGEAR XR1000 devices before 1.0.0.58 are affected by denial of service. Xr1000 Firmware 1.0.0.58+ Fix from $1,6002021-12-26 MEDIUM 6.5 CVE-2021-45521 Certain NETGEAR devices are affected by a hardcoded password. This affects RBK352 before 4.4.0.10, RBR350 before 4.4.0.10, and RBS350 before 4.4.0.10. Rbk352 Firmware 4.4.0.10+ Fix from $1,6002021-12-26 CRITICAL 9.8 CVE-2021-45495 NETGEAR D7000 devices before 1.0.1.68 are affected by authentication bypass. D7000 Firmware 1.0.1.68+ Fix from $2,3002021-12-26 CRITICAL 9.8 CVE-2021-45496 NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass. D7000 Firmware 1.0.1.82+ Fix from $2,3002021-12-26 CRITICAL 9.8 CVE-2021-45497 NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass. D7000 Firmware 1.0.1.82+ Fix from $2,3002021-12-26 CRITICAL 9.8 CVE-2021-45498 NETGEAR R6700v2 devices before 1.2.0.88 are affected by authentication bypass. R6700v2 Firmware 1.2.0.88+ Fix from $2,3002021-12-26 CRITICAL 9.8 CVE-2021-45501 Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000 before 1.0.1.82, R6… Ac2400 Firmware 1.0.0.52 / 1.0.0.80+ Fix from $2,3002021-12-26 HIGH 8.8 CVE-2021-45499 Certain NETGEAR devices are affected by authentication bypass. This affects R6900P before 1.3.3.140, R7000P before 1.3.3.140, R7900P before 1.4.2.84,… R6900p Firmware 1.0.3.106 / 1.3.3.140+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45500 Certain NETGEAR devices are affected by authentication bypass. This affects R7000P before 1.3.3.140 and R8000 before 1.0.4.68. R7000p Firmware 1.0.4.68 / 1.3.3.140+ Fix from $1,9502021-12-26 HIGH 8.8 CVE-2021-45502 Certain NETGEAR devices are affected by authentication bypass. This affects CBR750 before 4.6.3.6, RBK752 before 3.2.17.12, RBK752 before 3.2.17.12, … Cbr750 Firmware 3.2.17.12 / 4.6.3.6+ Fix from $1,9502021-12-26 HIGH 7.5 CVE-2021-45493 Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RAX35 before 1.0.4.102, RAX38 before 1.0.4.102, and RA… Rax35 Firmware 1.0.4.102+ Fix from $1,9502021-12-26 HIGH 7.1 CVE-2021-41449 A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to g… Rax35 Firmware 1.0.4.102+ Fix from $1,9502021-12-09 HIGH 8.8 CVE-2021-34991EPSS 6% This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400v2 1.0.4.106_10.0.80 routers… Ex3700 Firmware 1.0.0.66 / 1.0.0.94+ Fix from $1,9502021-11-15 HIGH 8.1 CVE-2021-40847EPSS 10% The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execution as root… R6400v2 Firmware No fix yet Fix from $1,9502021-09-21 HIGH 7.2 CVE-2021-41383 setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters in the ntp_server field. R6020 Firmware No fix yet Fix from $1,9502021-09-17 HIGH 8.8 CVE-2021-41314EPSS 14% Certain NETGEAR smart switches are affected by a \n injection in the web UI's password field, which - due to several faulty aspects of the authentica… Gc108p Firmware 1.0.3.2 / 1.0.5.3+ Fix from $1,9502021-09-16 HIGH 7.1 CVE-2021-40867 Certain NETGEAR smart switches are affected by an authentication hijacking race-condition vulnerability by an unauthenticated attacker who uses the s… Gc108p Firmware 1.0.3.2 / 1.0.5.3+ Fix from $1,9502021-09-13 HIGH 8.8 CVE-2021-40866 Certain NETGEAR smart switches are affected by a remote admin password change by an unauthenticated attacker via the (disabled by default) /sqfs/bin/… Gc108p Firmware 1.0.3.2 / 1.0.5.3+ Fix from $1,9502021-09-13 HIGH 8.8 CVE-2021-38539 Certain NETGEAR devices are affected by privilege escalation. This affects D8500 before 1.0.3.44, R6400v2 before 1.0.2.66, R6700 before 1.0.2.6, R670… D8500 Firmware 1.0.0.50 / 1.0.2.4+ Fix from $1,9502021-08-11 MEDIUM 6.1 CVE-2021-38538 Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7800 before 1.0.2.68, R8900 before 1.0.4.26, R9000 before 1.… D7800 Firmware 1.0.0.78 / 1.0.1.56+ Fix from $1,6002021-08-11 MEDIUM 5.4 CVE-2021-38533 NETGEAR RAX40 devices before 1.0.3.64 are affected by stored XSS. Rax40 Firmware 1.0.3.64+ Fix from $1,6002021-08-11