netgear
1,325 tracked vulnerabilities.
CVE-2019-20644
MEDIUM
NETGEAR RAX40 Firmware < 1.0.3.62 - Stored Cross-Site Scripting
Apr 15, 2020
CVSS 4.8
EPSS 0.00
CVE-2019-20643
HIGH
NETGEAR RAX40 <1.0.3.64 - Info Disclosure
Apr 15, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-20642
HIGH
NETGEAR RAX40 Firmware < 1.0.3.64 - Authentication Bypass
Apr 15, 2020
CVSS 8.0
EPSS 0.00
CVE-2019-20641
HIGH
NETGEAR RAX40 <1.0.3.64 - Privilege Escalation
Apr 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-20640
HIGH
NETGEAR Multiple Routers and Gateways - Unauthenticated Stack-based Buffer Overflow
Apr 15, 2020
CVSS 8.8
EPSS 0.01
CVE-2019-20639
MEDIUM
NETGEAR RBR50 RBS50 RBK50 < 2.3.5.30 - Stored Cross-Site Scripting
Apr 15, 2020
CVSS 4.8
EPSS 0.00
CVE-2019-20638
MEDIUM
NETGEAR MR1100 Firmware < 12.06.08.00 - Unauthenticated Exposure of Administrative Credentials
Apr 15, 2020
CVSS 6.5
EPSS 0.00
CVE-2019-20767
HIGH
NETGEAR Multiple Router Models Firmware - Authenticated Stack-based Buffer Overflow
Apr 15, 2020
CVSS 7.2
EPSS 0.01
CVE-2019-19964
LOW
NETGEAR GS728TPS <5.3.0.35 - Auth Bypass
Mar 23, 2020
CVSS 2.7
EPSS 0.00
CVE-2019-13395
HIGH
NETGEAR CG3700b Firmware V2.02.03 - Cross-Site Request Forgery via /goform/ URIs
Mar 13, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-13394
CRITICAL
NETGEAR CG3700b Firmware V2.02.03 - Cleartext Transmission of Sensitive Information via HTTP Basic Authentication
Mar 13, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-13393
HIGH
Voo NETGEAR CG3700b V2.02.03 - Info Disclosure
Mar 13, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-20489
CRITICAL
NETGEAR WNR1000V4 1.1.0.54 - Unauthenticated Authentication Bypass via FW_remote.htm Cookie Handling
Mar 02, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-20488
CRITICAL
NETGEAR WNR1000V4 1.1.0.54 - OS Command Injection via sysDNSHost Parameter
Mar 02, 2020
CVSS 9.8
EPSS 0.05
CVE-2019-20487
HIGH
NETGEAR WNR1000V4 1.1.0.54 - Unauthenticated Cross-Site Request Forgery via setup.cgi
Mar 02, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-20486
MEDIUM
NETGEAR WNR1000V4 1.1.0.54 - Stored Cross-Site Scripting via UI Language Configuration
Mar 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12513
MEDIUM
NETGEAR Nighthawk X10-R900 < 1.0.4.24 - Stored Cross-Site Scripting via DHCP Hostname Field
Feb 24, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12512
MEDIUM
NETGEAR Nighthawk X10-R900 < 1.0.4.24 - Stored Cross-Site Scripting via X-Forwarded-For Header
Feb 24, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12511
CRITICAL
NETGEAR Nighthawk X10-R9000 < 1.0.4.26 - OS Command Injection via AdvancedQoS:GetCurrentBandwidthByMAC SOAP Endpoint
Feb 24, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-12510
CRITICAL
NETGEAR Nighthawk X10-R900 < 1.0.4.26 - Unauthenticated Authentication Bypass via X-Forwarded-For Header
Feb 24, 2020
CVSS 9.1
EPSS 0.00
CVE-2019-17137
CRITICAL
NETGEAR AC1200 R6220 Firmware <1.1.0.86 - Auth Bypass
Feb 10, 2020
CVSS 9.4
EPSS 0.00
CVE-2019-19494
HIGH
Broadcom based cable modems - Buffer Overflow
Jan 09, 2020
CVSS 8.8
EPSS 0.69
CVE-2019-17373
CRITICAL
NETGEAR devices - Unauthenticated Access
Oct 09, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-17372
HIGH
NETGEAR Multiple Devices - Unauthenticated Authentication Bypass via genieDisableLanChanged.cgi
Oct 09, 2019
CVSS 8.1
EPSS 0.01
CVE-2019-17049
HIGH
NETGEAR SRX5308 4.3.5-3 - SQL Injection
Sep 30, 2019
CVSS 7.5
EPSS 0.00
Products
r7800_firmware 245
r9000_firmware 215
r6700_firmware 173
d7800_firmware 172
r7000p_firmware 154
rbr850_firmware 148
rbs850_firmware 146
rbk852_firmware 142
r7000_firmware 136
r8900_firmware 135
r6900_firmware 132
rbs750_firmware 131
rbr750_firmware 128
r7500_firmware 126
r8500_firmware 125
wndr4500_firmware 124
wndr4300_firmware 123
rbk752_firmware 120
r8000_firmware 119
xr500_firmware 118
r6400_firmware 113
wndr3700_firmware 113
r6900p_firmware 108
rbr50_firmware 104
rbs50_firmware 103
r7900_firmware 102
rbk50_firmware 102
r6800_firmware 96
wnr2000_firmware 93
d7000_firmware 92
Quick Filters