Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.7
CVE-2024-51006
Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the ipv6_static_ip parameter in the ipv6_tunnel function. This vulnerability …
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-51007
Netgear XR300 v1.0.3.78 was discovered to contain a stack overflow via the passphrase parameter at wireless.cgi. This vulnerability allows attackers …
Xr300 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-51011
Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at pppo…
Xr300 Firmware
Mitigation only
HIGH 8.0
CVE-2024-50993
Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at admin_account.cgi. This vulnera…
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50994
Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component ipv6_fix.cgi via the ipv6_wan_ipaddr, ipv…
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50995
Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the share_name parameter at usb_remote_smb_conf.cgi. This vulnerability allow…
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50996
Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the bpa_server p…
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50997
Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the pptp_user_ip…
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50998
Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component openvpn.cgi via the openvpn_service_port …
R8500 Firmware
Mitigation only
MEDIUM 5.7
CVE-2024-50999
Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at password.cgi. This vulnerabilit…
R8500 Firmware
Mitigation only
MEDIUM 6.8
CVE-2024-35518
Netgear EX6120 v1.0.0.68 is vulnerable to Command Injection in genie_fix2.cgi via the wan_dns1_pri parameter.
Ex6120 Firmware
after 1.0.0.68
MEDIUM 6.8
CVE-2024-35519
Netgear EX6120 v1.0.0.68, Netgear EX6100 v1.0.2.28, and Netgear EX3700 v1.0.0.96 are vulnerable to command injection in operating_mode.cgi via the ap…
Ex3700 Firmware
after 1.0.2.28
MEDIUM 6.8
CVE-2024-35520EPSS 9%
Netgear R7000 1.0.11.136 is vulnerable to Command Injection in RMT_invite.cgi via device_name2 parameter.
R7000 Firmware
Mitigation only
HIGH 7.2
CVE-2024-35522
Netgear EX3700 ' AC750 WiFi Range Extender Essentials Edition before 1.0.0.98 contains an authenticated command injection in operating_mode.cgi via t…
Ex3700 Firmware
1.0.0.98+
HIGH 7.2
CVE-2024-35517EPSS 15%
Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter.
Xr1000 Firmware
Mitigation only
HIGH 8.8
CVE-2024-42756EPSS 14%
An issue in Netgear DGN1000WW v.1.1.00.45 allows a remote attacker to execute arbitrary code via the Diagnostics page
Dgn1000ww Firmware
Mitigation only
HIGH 8.8
CVE-2024-6813
NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers…
Prosafe Network Management System
Mitigation only
HIGH 8.8
CVE-2024-6814
NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability. This vulnerability allows remote attacke…
Prosafe Network Management System
Mitigation only
HIGH 8.8
CVE-2024-36787
An issue in Netgear WNR614 JNR1010V2 N300-V1.1.0.54_1.0.1 allows attackers to bypass authentication and access the administrative interface via unspe…
Wnr614 Firmware
No fix yet
HIGH 8.8
CVE-2024-36790
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 was discovered to store credentials in plaintext.
Wnr614 Firmware
No fix yet
HIGH 8.2
CVE-2024-36792
An issue in the implementation of the WPS in Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 allows attackers to gain access to the router's pin.
Wnr614 Firmware
No fix yet
HIGH 8.1
CVE-2024-36789
An issue in Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 allows attackers to create passwords that do not conform to defined security standards.
Wnr614 Firmware
No fix yet
HIGH 8.8
CVE-2024-5505EPSS 47%
NETGEAR ProSAFE Network Management System UpLoadServlet Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote att…
Prosafe Network Management System
1.7.0.37+
HIGH 8.8
CVE-2024-5246EPSS 31%
NETGEAR ProSAFE Network Management System Tomcat Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary…
Prosafe Network Management Software 300
Mitigation only
HIGH 8.8
CVE-2024-5247EPSS 27%
NETGEAR ProSAFE Network Management System UpLoadServlet Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remot…
Prosafe Network Management System
1.7.0.37+
HIGH 7.8
CVE-2024-5245
NETGEAR ProSAFE Network Management System Default Credentials Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to …
Prosafe Network Management System
1.7.0.37+
HIGH 8.8
CVE-2022-43654
NETGEAR CAX30S SSO Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary c…
Cax30 Firmware
2.1.3.10+
HIGH 8.8
CVE-2021-34982
NETGEAR Multiple Routers httpd Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers …
Dc112a Firmware
1.0.0.46 / 1.0.0.62+
MEDIUM 6.5
CVE-2021-34983
NETGEAR Multiple Routers httpd Missing Authentication for Critical Function Information Disclosure Vulnerability. This vulnerability allows network-a…
Xr1000 Firmware
1.0.0.62 / 1.0.0.64+
HIGH 8.8
CVE-2021-34947
NETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitr…
D7800 Firmware
1.0.0.146 / 1.0.1.64+