netgear

1,325 tracked vulnerabilities.

CVE-2024-42756 HIGH
Netgear DGN1000WW 1.1.00.45 - Remote Code Execution via Diagnostics Page
Aug 23, 2024
CVSS 8.8
EPSS 0.20
CVE-2024-6814 HIGH
NETGEAR ProSAFE Network Management System - Authenticated SQL Injection via getFilterString
Aug 21, 2024
CVSS 8.8
EPSS 0.10
CVE-2024-6813 HIGH
NETGEAR ProSAFE Network Management System - Authenticated SQL Injection via getSortString
Aug 21, 2024
CVSS 8.8
EPSS 0.10
CVE-2024-7153 MEDIUM
Netgear WN604 <20240719 - Direct Request
Jul 27, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-6646 MEDIUM NUCLEI
Netgear WN604 <20240710 - Info Disclosure
Jul 10, 2024
CVSS 5.3
EPSS 0.91
CVE-2024-36792 HIGH
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 - Privilege Escalation
Jun 07, 2024
CVSS 8.2
EPSS 0.00
CVE-2024-36790 HIGH
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 - Cleartext Storage of Sensitive Information
Jun 07, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-36789 HIGH
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 - Info Disclosure
Jun 07, 2024
CVSS 8.1
EPSS 0.00
CVE-2024-36788 MEDIUM
Netgear WNR614/JNR1010V2 N300-V1.1.0.54_1.0.1 - Sensitive Info Exposure via Missing HTTPOnly Cookie Flag
Jun 07, 2024
CVSS 4.8
EPSS 0.00
CVE-2024-36787 HIGH
Netgear WNR614 JNR1010V2 N300-V1.1.0.54_1.0.1 - Auth Bypass
Jun 07, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-36795 MEDIUM
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 - Info Disclosure
Jun 06, 2024
CVSS 4.0
EPSS 0.00
CVE-2024-5505 HIGH
NETGEAR ProSAFE NMS < 1.7.0.37 - Authenticated RCE via Path Traversal
Jun 06, 2024
CVSS 8.8
EPSS 0.76
CVE-2024-5247 HIGH
NETGEAR ProSAFE Network Management System < 1.7.0.37 - Authenticated Remote Code Execution via UpLoadServlet
May 23, 2024
CVSS 8.8
EPSS 0.58
CVE-2024-5246 HIGH
NETGEAR ProSAFE Network Management Software 300 - Authenticated Remote Code Execution via Apache Tomcat
May 23, 2024
CVSS 8.8
EPSS 0.75
CVE-2024-5245 HIGH
NETGEAR ProSAFE Network Management System < 1.7.0.37 - Local Privilege Escalation via Default MySQL Credentials
May 23, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-4235 LOW
Netgear DG834Gv5 1.6.01.34 - Info Disclosure
Apr 26, 2024
CVSS 2.7
EPSS 0.00
CVE-2024-30572 HIGH
Netgear R6850 1.1.0.88 - OS Command Injection via ntp_server Parameter
Apr 03, 2024
CVSS 8.0
EPSS 0.01
CVE-2024-30571 HIGH
Netgear R6850 v1.1.0.88 - Unauthenticated Exposure of Sensitive Information in BRS_top.html
Apr 03, 2024
CVSS 7.5
EPSS 0.22
CVE-2024-30570 MEDIUM NUCLEI
Netgear R6850 v1.1.0.88 - Unauthenticated Sensitive Information Exposure via debuginfo.htm
Apr 03, 2024
CVSS 5.3
EPSS 0.13
CVE-2024-30569 HIGH NUCLEI
Netgear R6850 v1.1.0.88 - Unauthenticated Exposure of Sensitive Information via currentsetting.htm
Apr 03, 2024
CVSS 7.5
EPSS 0.29
CVE-2024-30568 CRITICAL NUCLEI
Netgear R6850 1.1.0.88 - OS Command Injection via c4-IPAddr Parameter
Apr 03, 2024
CVSS 9.8
EPSS 0.90
CVE-2024-28340 HIGH
Netgear CBR40, CBK40, CBK43 2.5.0.28 - Unauthenticated Sensitive Information Exposure via currentsetting.htm
Mar 12, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-28339 MEDIUM
Netgear CBR40, CBK40, CBK43 2.5.0.28 - Unauthenticated Sensitive Information Exposure via debuginfo.htm
Mar 12, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-1431 MEDIUM
Netgear R7000 Firmware 1.0.11.136_10.2.120 - Information Disclosure via Web Management Interface
Feb 11, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-1430 MEDIUM
Netgear R7000 1.0.11.136_10.2.120 - Information Disclosure via Web Management Interface
Feb 11, 2024
CVSS 4.3
EPSS 0.00