netgear
1,325 tracked vulnerabilities.
CVE-2023-34563
CRITICAL
NETGEAR R6250 Firmware 1.0.4.48 - Authenticated Buffer Overflow
Jun 20, 2023
CVSS 9.8
EPSS 0.18
CVE-2023-33533
HIGH
Netgear D6220 D8500 R6700 R6900 - Authenticated Command Injection via Web Management Post Request
Jun 06, 2023
CVSS 8.8
EPSS 0.07
CVE-2023-33532
CRITICAL
Netgear R6250 <1.0.4.48 - Command Injection
Jun 06, 2023
CVSS 9.8
EPSS 0.27
CVE-2023-2396
MEDIUM
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via USERDBUsers.Password
Apr 28, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-2395
MEDIUM
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via Login.userAgent Parameter
Apr 28, 2023
CVSS 4.3
EPSS 0.00
CVE-2023-2394
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via wanName Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2393
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via ConfigPort.LogicalIfName Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2392
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via ManualDate.minutes Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2391
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via ntp.server2 Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2390
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via NTP Server Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2389
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via smtpServer.emailServer Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2388
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via smtpServer.fromAddr Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2387
LOW
Netgear SRX5308 Firmware <= 4.3.5-3 - Cross-Site Scripting via winsServer1 Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2386
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via smtpServer.toAddr Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2385
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via IKE Policy Name Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2384
LOW
Netgear SRX5308 Firmware <= 4.3.5-3 - Cross-Site Scripting via dhcp.SecDnsIPByte2 Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.01
CVE-2023-2383
LOW
Netgear SRX5308 up to 4.3.5-3 - Cross-Site Scripting via smtpServer.fromAddr Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2382
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via sysLogInfo.serverName Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2381
LOW
Netgear SRX5308 <= 4.3.5-3 - Cross-Site Scripting via BandWidthProfile.ProfileName Parameter
Apr 28, 2023
CVSS 2.4
EPSS 0.00
CVE-2023-2380
MEDIUM
Netgear SRX5308 <= 4.3.5-3 - Denial of Service
Apr 28, 2023
CVSS 6.5
EPSS 0.01
CVE-2023-30280
CRITICAL
Netgear R6900 R6700 R6700v3 - Remote Code Execution and Denial of Service via fwSchedule.cgi getInputData Parameter
Apr 26, 2023
CVSS 9.8
EPSS 0.04
CVE-2023-28338
HIGH
Netgear Nighthawk Wifi6 Router (RAX30) - Denial of Service via Multipart Boundary Request
Mar 15, 2023
CVSS 7.5
EPSS 0.00
CVE-2023-28337
HIGH
Netgear Nighthawk Wifi6 Router (RAX30) - Unrestricted Firmware Upload via Hidden forceFWUpdate Parameter
Mar 15, 2023
CVSS 8.8
EPSS 0.00
CVE-2023-1327
CRITICAL
Netgear RAX30 Firmware < 1.0.6.74 - Unauthenticated Authentication Bypass via Password Reset
Mar 14, 2023
CVSS 9.8
EPSS 0.02
CVE-2023-27853
CRITICAL
NETGEAR Nighthawk WiFi6 Router < 1.0.10.94 - Remote Code Execution via SOAP Service Format String Vulnerability
Mar 10, 2023
CVSS 9.8
EPSS 0.01
Products
r7800_firmware 245
r9000_firmware 215
r6700_firmware 173
d7800_firmware 172
r7000p_firmware 154
rbr850_firmware 148
rbs850_firmware 146
rbk852_firmware 142
r7000_firmware 136
r8900_firmware 135
r6900_firmware 132
rbs750_firmware 131
rbr750_firmware 128
r7500_firmware 126
r8500_firmware 125
wndr4500_firmware 124
wndr4300_firmware 123
rbk752_firmware 120
r8000_firmware 119
xr500_firmware 118
r6400_firmware 113
wndr3700_firmware 113
r6900p_firmware 108
rbr50_firmware 104
rbs50_firmware 103
r7900_firmware 102
rbk50_firmware 102
r6800_firmware 96
wnr2000_firmware 93
d7000_firmware 92
Quick Filters