Vulnerability index

Browse CVEs

1,134 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2022-48196 Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects RAX40 before 1.0.2.60, RAX35 before 1.0.2.60, … Rax40 Firmware 1.0.2.60 / 1.0.4.122+ Fix from $2,3002022-12-30 HIGH 8.1 CVE-2022-46423 An exploitable firmware modification vulnerability was discovered on the Netgear WNR2000v1 router. An attacker can conduct a MITM (Man-in-the-Middle)… Wnr2000 Firmware after 1.2.3.7 Fix from $1,9502022-12-20 HIGH 8.1 CVE-2022-46424 An exploitable firmware modification vulnerability was discovered on the Netgear XWN5001 Powerline 500 WiFi Access Point. An attacker can conduct a M… Xwn5001 Firmware after 0.4.1.1 Fix from $1,9502022-12-20 HIGH 7.8 CVE-2022-47210 The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued at this console, however, ap… Rax30 Firmware 1.0.9.90+ Fix from $1,9502022-12-16 HIGH 8.8 CVE-2022-47208 The “puhttpsniff” service, which runs by default, is susceptible to command injection due to improperly sanitized user input. An unauthenticated atta… Nighthawk Ax1800 Firmware 1.0.9.90+ Fix from $1,9502022-12-16 HIGH 8.8 CVE-2022-47209 A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for this account is “support” and … Rax30 Firmware 1.0.9.90+ Fix from $1,9502022-12-16 CRITICAL 10.0 CVE-2022-4390 A network misconfiguration is present in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series of routers. IPv6 is enabled for the WAN interf… Ax2400 Firmware 1.0.9.90+ Fix from $2,3002022-12-09 CRITICAL 9.8 CVE-2022-44184 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_sec. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44197 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameter openvpn_server_ip. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44198 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter openvpn_push1. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44199 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter openvpn_server_ip. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44200 Netgear R7000P V1.3.0.8, V1.3.1.64 is vulnerable to Buffer Overflow via parameters: stamode_dns1_pri and stamode_dns1_sec. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44194 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameters apmode_dns1_pri and apmode_dns1_sec. R7000p Firmware Mitigation only Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44191 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameters KEY1 and KEY2. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44193 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameters: starthour, startminute , endhour, and endminute. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44196 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via parameter openvpn_push1. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44186 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_pri. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44187 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via wan_dns1_pri. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44188 Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter enable_band_steering. R7000p Firmware No fix yet Fix from $2,3002022-11-22 CRITICAL 9.8 CVE-2022-44190 Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter enable_band_steering. R7000p Firmware No fix yet Fix from $2,3002022-11-22 HIGH 8.8 CVE-2022-42221 Netgear R6220 v1.1.0.114_1.0.1 suffers from Incorrect Access Control, resulting in a command injection vulnerability. R6220 Firmware No fix yet Fix from $1,9502022-10-17 CRITICAL 9.8 CVE-2022-37232 Netgear N300 wireless router wnr2000v4-V1.0.0.70 is vulnerable to Buffer Overflow via uhttpd. There is a stack overflow vulnerability caused by strcp… Wnr2000v4 Firmware Mitigation only Fix from $2,3002022-09-23 CRITICAL 9.8 CVE-2022-37235 Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000-V1.0.11.134_10.2.119 is vulnerable to Buffer Overflow via the wl binary in firmwar… R7000 Firmware Mitigation only Fix from $2,3002022-09-23 CRITICAL 9.8 CVE-2022-31937 Netgear N300 wireless router wnr2000v4-V1.0.0.70 was discovered to contain a stack overflow via strcpy in uhttpd. Wnr2000v4 Firmware Mitigation only Fix from $2,3002022-09-22 HIGH 7.8 CVE-2022-37234 Netgear Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router R7000-V1.0.11.134_10.2.119 is vulnerable to Buffer Overflow via the wl binary in firmwar… R7000 Firmware Mitigation only Fix from $1,9502022-09-22 HIGH 7.5 CVE-2022-38955 An exploitable firmware modification vulnerability was discovered on the Netgear WPN824EXT WiFi Range Extender. An attacker can conduct a MITM attack… Wpn824ext Firmware Mitigation only Fix from $1,9502022-09-20 MEDIUM 5.3 CVE-2022-38956 An exploitable firmware downgrade vulnerability was discovered on the Netgear WPN824EXT WiFi Range Extender. An attacker can conduct a MITM attack to… Wpn824ext Firmware after 1.1.1_1.1.9 Fix from $1,6002022-09-20 HIGH 8.8 CVE-2022-30079EPSS 25% Command injection vulnerability was discovered in Netgear R6200 v2 firmware through R6200v2-V1.0.3.12 via binary /sbin/acos_service that could allow … R6200 Mitigation only Fix from $1,9502022-09-08 CRITICAL 9.8 CVE-2021-34236 Buffer Overflow in Netgear R8000 Router with firmware v1.0.4.56 allows remote attackers to execute arbitrary code or cause a denial-of-service by sen… R8000 Firmware Mitigation only Fix from $2,3002022-09-08 HIGH 8.8 CVE-2022-30078 NETGEAR R6200_V2 firmware versions through R6200v2-V1.0.3.12_10.1.11 and R6300_V2 firmware versions through R6300v2-V1.0.4.52_10.0.93 allow remote au… R6200 Firmware after 1.0.4.52_10.0.93 Fix from $1,9502022-09-07