netgear

1,325 tracked vulnerabilities.

CVE-2019-20644 MEDIUM
NETGEAR RAX40 Firmware < 1.0.3.62 - Stored Cross-Site Scripting
Apr 15, 2020
CVSS 4.8
EPSS 0.00
CVE-2019-20643 HIGH
NETGEAR RAX40 <1.0.3.64 - Info Disclosure
Apr 15, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-20642 HIGH
NETGEAR RAX40 Firmware < 1.0.3.64 - Authentication Bypass
Apr 15, 2020
CVSS 8.0
EPSS 0.00
CVE-2019-20641 HIGH
NETGEAR RAX40 <1.0.3.64 - Privilege Escalation
Apr 15, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-20640 HIGH
NETGEAR Multiple Routers and Gateways - Unauthenticated Stack-based Buffer Overflow
Apr 15, 2020
CVSS 8.8
EPSS 0.01
CVE-2019-20639 MEDIUM
NETGEAR RBR50 RBS50 RBK50 < 2.3.5.30 - Stored Cross-Site Scripting
Apr 15, 2020
CVSS 4.8
EPSS 0.00
CVE-2019-20638 MEDIUM
NETGEAR MR1100 Firmware < 12.06.08.00 - Unauthenticated Exposure of Administrative Credentials
Apr 15, 2020
CVSS 6.5
EPSS 0.00
CVE-2019-20767 HIGH
NETGEAR Multiple Router Models Firmware - Authenticated Stack-based Buffer Overflow
Apr 15, 2020
CVSS 7.2
EPSS 0.01
CVE-2019-19964 LOW
NETGEAR GS728TPS <5.3.0.35 - Auth Bypass
Mar 23, 2020
CVSS 2.7
EPSS 0.00
CVE-2019-13395 HIGH
NETGEAR CG3700b Firmware V2.02.03 - Cross-Site Request Forgery via /goform/ URIs
Mar 13, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-13394 CRITICAL
NETGEAR CG3700b Firmware V2.02.03 - Cleartext Transmission of Sensitive Information via HTTP Basic Authentication
Mar 13, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-13393 HIGH
Voo NETGEAR CG3700b V2.02.03 - Info Disclosure
Mar 13, 2020
CVSS 7.5
EPSS 0.00
CVE-2019-20489 CRITICAL
NETGEAR WNR1000V4 1.1.0.54 - Unauthenticated Authentication Bypass via FW_remote.htm Cookie Handling
Mar 02, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-20488 CRITICAL
NETGEAR WNR1000V4 1.1.0.54 - OS Command Injection via sysDNSHost Parameter
Mar 02, 2020
CVSS 9.8
EPSS 0.05
CVE-2019-20487 HIGH
NETGEAR WNR1000V4 1.1.0.54 - Unauthenticated Cross-Site Request Forgery via setup.cgi
Mar 02, 2020
CVSS 8.8
EPSS 0.00
CVE-2019-20486 MEDIUM
NETGEAR WNR1000V4 1.1.0.54 - Stored Cross-Site Scripting via UI Language Configuration
Mar 02, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12513 MEDIUM
NETGEAR Nighthawk X10-R900 < 1.0.4.24 - Stored Cross-Site Scripting via DHCP Hostname Field
Feb 24, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12512 MEDIUM
NETGEAR Nighthawk X10-R900 < 1.0.4.24 - Stored Cross-Site Scripting via X-Forwarded-For Header
Feb 24, 2020
CVSS 6.1
EPSS 0.00
CVE-2019-12511 CRITICAL
NETGEAR Nighthawk X10-R9000 < 1.0.4.26 - OS Command Injection via AdvancedQoS:GetCurrentBandwidthByMAC SOAP Endpoint
Feb 24, 2020
CVSS 9.8
EPSS 0.00
CVE-2019-12510 CRITICAL
NETGEAR Nighthawk X10-R900 < 1.0.4.26 - Unauthenticated Authentication Bypass via X-Forwarded-For Header
Feb 24, 2020
CVSS 9.1
EPSS 0.00
CVE-2019-17137 CRITICAL
NETGEAR AC1200 R6220 Firmware <1.1.0.86 - Auth Bypass
Feb 10, 2020
CVSS 9.4
EPSS 0.00
CVE-2019-19494 HIGH
Broadcom based cable modems - Buffer Overflow
Jan 09, 2020
CVSS 8.8
EPSS 0.69
CVE-2019-17373 CRITICAL
NETGEAR devices - Unauthenticated Access
Oct 09, 2019
CVSS 9.8
EPSS 0.01
CVE-2019-17372 HIGH
NETGEAR Multiple Devices - Unauthenticated Authentication Bypass via genieDisableLanChanged.cgi
Oct 09, 2019
CVSS 8.1
EPSS 0.01
CVE-2019-17049 HIGH
NETGEAR SRX5308 4.3.5-3 - SQL Injection
Sep 30, 2019
CVSS 7.5
EPSS 0.00