netgear

1,325 tracked vulnerabilities.

CVE-2017-18847 MEDIUM
NETGEAR R6400v2/R7000P/R6900P/R7900/R8300/R8500/D8500 Firmware - Arbitrary File Read
Apr 20, 2020
CVSS 5.5
EPSS 0.00
CVE-2017-18846 MEDIUM
NETGEAR R6250/R6400v2/R7000P/R6900P/R7900/R8300/R8500/D8500 Firmware - Stack-based Buffer Overflow
Apr 20, 2020
CVSS 6.7
EPSS 0.00
CVE-2017-18845 HIGH
NETGEAR R6700v2 and R6800 < 1.1.0.38 - Insufficiently Protected Credentials
Apr 20, 2020
CVSS 7.8
EPSS 0.00
CVE-2017-18844 HIGH
NETGEAR R6700v2/R6800/D7000 Firmware - Unprotected Admin Credential Exposure
Apr 20, 2020
CVSS 7.8
EPSS 0.00
CVE-2017-18843 HIGH
NETGEAR R6700v2/R6800/D7000 Firmware - Unprotected Admin Credential Exposure
Apr 20, 2020
CVSS 7.8
EPSS 0.00
CVE-2017-18842 HIGH
NETGEAR R7300/R8500/DGN2200/D2200D Firmware - Cross-Site Request Forgery
Apr 20, 2020
CVSS 8.8
EPSS 0.00
CVE-2017-18841 MEDIUM
NETGEAR R6220/R6700/R6800/WNDR3700/D7000 - OS Command Injection
Apr 20, 2020
CVSS 6.7
EPSS 0.00
CVE-2017-18840 MEDIUM
NETGEAR M4300 and M4200 Firmware < 12.0.2.15 - Denial of Service
Apr 20, 2020
CVSS 6.2
EPSS 0.00
CVE-2017-18839 MEDIUM
NETGEAR M4300 and M4200 Firmware < 12.0.2.15 - Stored Cross-Site Scripting
Apr 20, 2020
CVSS 4.8
EPSS 0.00
CVE-2017-18838 HIGH
NETGEAR devices <12.0.2.15 - Privilege Escalation
Apr 20, 2020
CVSS 7.8
EPSS 0.00
CVE-2017-18850 HIGH
NETGEAR Multiple Routers - Unauthenticated Authentication Bypass
Apr 20, 2020
CVSS 8.4
EPSS 0.00
CVE-2017-18852 HIGH
NETGEAR R7300DST/R8300/R8500/WNDR3400v3 - Cross-Site Request Forgery and Authentication Bypass
Apr 20, 2020
CVSS 8.8
EPSS 0.00
CVE-2017-18851 MEDIUM
NETGEAR D8500/R6400/R8300/R8500/R6100 Firmware - Authenticated Command Injection
Apr 20, 2020
CVSS 6.7
EPSS 0.00
CVE-2017-18378 HIGH
NETGEAR ReadyNAS Surveillance <1.4.3-17 x86 & <1.1.4-7 ARM - RCE via upgrade_handle.php
Jun 11, 2019
CVSS 8.4
EPSS 0.16
CVE-2017-6862 CRITICAL KEV
NETGEAR WNR2000v3 < 1.1.2.14, WNR2000v4 < 1.0.0.66, WNR2000v5 < 1.0.0.42 - Remote Code Execution via Buffer Overflow
May 26, 2017
CVSS 9.8
EPSS 0.43
CVE-2017-2137 LOW
ProSAFE Plus Configuration Utility <2.3.29 - Auth Bypass
Apr 28, 2017
CVSS 3.7
EPSS 0.00
CVE-2017-6366 HIGH
NETGEAR DGN2200 Firmware 10.0.0.20-10.0.0.50 - Cross-Site Request Forgery via DNS Lookup
Mar 15, 2017
CVSS 8.8
EPSS 0.00
CVE-2017-6334 HIGH KEV
NETGEAR DGN2200 Series Firmware <= 10.0.0.50 - Authenticated OS Command Injection via dnslookup.cgi host_name Parameter
Mar 06, 2017
CVSS 8.8
EPSS 0.89
CVE-2017-6077 CRITICAL KEV
NETGEAR DGN2200 Firmware < 10.0.0.50 - Authenticated OS Command Injection via ping_IPAddr Parameter
Feb 22, 2017
CVSS 9.8
EPSS 0.83
CVE-2017-5521 HIGH KEVNUCLEI
NETGEAR R8500-R8000 - Info Disclosure
Jan 17, 2017
CVSS 8.1
EPSS 0.94
CVE-2016-11060 HIGH
NETGEAR FVS318G FVS318N FVS336G SRX5308 Firmware < 2017-02-10 - Denial of Service via Insecure SSL Renegotiation
Apr 28, 2020
CVSS 7.5
EPSS 0.01
CVE-2016-11059 HIGH
NETGEAR Multiple Routers < 2017-01-06 - Password Exposure
Apr 28, 2020
CVSS 7.5
EPSS 0.00
CVE-2016-11058 HIGH
NETGEAR genie < 2.4.34 - Insufficient Session Expiration via Hard-coded API Keys
Apr 28, 2020
CVSS 7.5
EPSS 0.00
CVE-2016-11057 HIGH
NETGEAR Multiple Routers < 2017-01-06 - Authentication Bypass via Repeated URL Calls
Apr 28, 2020
CVSS 7.5
EPSS 0.00
CVE-2016-11056 HIGH
ReadyNAS Surveillance < 1.1.1-3 and < 1.4.1-3 - Unauthenticated Root Access
Apr 28, 2020
CVSS 8.8
EPSS 0.01