netgear

1,325 tracked vulnerabilities.

CVE-2026-24714 HIGH
NETGEAR products - Unauthenticated Telnet Service Activation via Magic Packet
Jan 30, 2026
CVSS 7.5
EPSS 0.00
CVE-2026-0408 HIGH
NETGEAR WiFi Range Extenders - Path Traversal
Jan 13, 2026
CVSS 8.0
EPSS 0.00
CVE-2026-0407 HIGH
NETGEAR WiFi Range Extenders - Auth Bypass
Jan 13, 2026
CVSS 8.0
EPSS 0.00
CVE-2026-0406 HIGH
NETGEAR XR1000v2 - Command Injection
Jan 13, 2026
CVSS 8.0
EPSS 0.00
CVE-2026-0405 HIGH
NETGEAR Orbi Firmware - Unauthenticated Authentication Bypass
Jan 13, 2026
CVSS 7.8
EPSS 0.00
CVE-2026-0404 HIGH
NETGEAR Orbi Firmware < 7.2.8.5 - Authenticated OS Command Injection via DHCPv6
Jan 13, 2026
CVSS 8.0
EPSS 0.00
CVE-2026-0403 HIGH
NETGEAR Orbi Routers - OS Command Injection via Insufficient Input Validation
Jan 13, 2026
CVSS 8.0
EPSS 0.00
CVE-2025-50526 CRITICAL
Netgear EX8000 V1.0.0.126 - Command Injection
Dec 23, 2025
CVSS 9.8
EPSS 0.00
CVE-2025-45493 MEDIUM
Netgear EX8000 Firmware V1.0.0.126 - Command Injection via iface Parameter in action_bandwidth Function
Dec 23, 2025
CVSS 6.5
EPSS 0.01
CVE-2025-12946 HIGH
NETGEAR Nighthawk Routers - Remote Code Execution via Speedtest DNS Manipulation
Dec 09, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-12945 HIGH
NETGEAR Nighthawk R7000P <1.3.3.154 - Command Injection
Dec 09, 2025
CVSS 7.2
EPSS 0.01
CVE-2025-12941 MEDIUM
NETGEAR C6220 and C6230 - Authenticated Denial of Service via Local WiFi Reboot
Dec 09, 2025
CVSS 5.7
EPSS 0.00
CVE-2025-12944 HIGH
NETGEAR DGN2200v4 Firmware < 1.0.0.132 - Remote Code Execution
Nov 11, 2025
CVSS 8.8
EPSS 0.00
CVE-2025-12943 HIGH
NETGEAR RAX30/RAXE300 - Command Injection
Nov 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-12942 HIGH
NETGEAR R6260-1.1.0.86, NETGEAR R6850-1.1.0.86 - Command Injection
Nov 11, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-12940 MEDIUM
NETGEAR WAX610 <10.8.11.4 - Info Disclosure
Nov 11, 2025
CVSS 5.5
EPSS 0.00
CVE-2025-44652 HIGH
Netgear RAX30 V1.0.10.94_3 - Denial of Service via USERLIMIT_GLOBAL Misconfiguration
Jul 21, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-44658 CRITICAL
Netgear RAX30 V1.0.10.94 - Remote Code Execution via PHP-FPM Misconfiguration
Jul 21, 2025
CVSS 9.8
EPSS 0.01
CVE-2025-44650 HIGH
Netgear R7000 and EAX80 Firmware - Denial of Service via Unlimited User Connections
Jul 21, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-52082 MEDIUM
Netgear XR300 V1.0.3.38_10.3.30 - Stack-based Buffer Overflow via usb_device.cgi read_access Parameter
Jul 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-52081 MEDIUM
Netgear XR300 V1.0.3.38_10.3.30 - Stack-based Buffer Overflow via usb_folder Parameter
Jul 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-52080 MEDIUM
Netgear XR300 V1.0.3.38_10.3.30 - Stack-based Buffer Overflow via USB Device CGI Share Name Parameter
Jul 15, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-7407 MEDIUM
Netgear D6400 1.0.0.114 - Code Injection
Jul 10, 2025
CVSS 6.3
EPSS 0.06
CVE-2025-6565 HIGH
Netgear WNCE3001 1.0.0.50 - Buffer Overflow
Jun 24, 2025
CVSS 8.8
EPSS 0.01
CVE-2025-6511 HIGH
Netgear EX6150 1.0.0.46_1.0.76 - Buffer Overflow
Jun 23, 2025
CVSS 8.8
EPSS 0.01