CVEs (154)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the RADIUSAddr%d_wla parameter at wireless.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request. |
1Netgear 3R6400v2 Firmware R7000p FirmwareXr300 FirmwareMay 21, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at pppoe.cgi. This vulnerability allows attackers to cause a Denial of Service...Show more |
1Netgear 4R6400v2 Firmware R7000p FirmwareR8500 Firmware+1 moreMay 21, 2025 Nov 5, 2024 N/A· v4 8.0 HIGH· v3 N/A· v2 Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a command injection vulnerability in the component ap_mode.cgi via the apmode_gateway parameter. This vulner...Show more |
1Netgear 2R7000p Firmware R8500 FirmwareApr 30, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear R8500 v1.0.2.160 and R7000P v1.3.3.154 were discovered to multiple stack overflow vulnerabilities in the component usb_device.cgi via the cifs_user, read_access, and write_access parameters. These vulnerabilities...Show more |
1Netgear 4R6400v2 Firmware R7000p FirmwareR8500 Firmware+1 moreMay 7, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to multiple stack overflow vulnerabilities in the component ap_mode.cgi via the apmode_dns1_pri and apmode_dns1_sec par...Show more |
1Netgear 4R6400v2 Firmware R7000p FirmwareR8500 Firmware+1 moreApr 30, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the l2tp_user_ip parameter at l2tp.cgi. This vulnerability allows attackers to cause a...Show more |
1Netgear 4R6400v2 Firmware R7000p FirmwareR8500 Firmware+1 moreMay 1, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the pptp_user_ip parameter at pptp.cgi. This vulnerability allows attackers to cause a...Show more |
1Netgear 4R6400v2 Firmware R7000p FirmwareR8500 Firmware+1 moreMay 7, 2025 Nov 5, 2024 N/A· v4 5.7 MEDIUM· v3 N/A· v2 Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a stack overflow via the bpa_server parameter at genie_bpa.cgi. This vulnerability allows attackers to cause...Show more |
1Netgear 52D6220 Firmware D6400 FirmwareD7000v2 Firmware+49 moreAug 14, 2025 May 7, 2024 N/A· v4 6.5 MEDIUM· v3 N/A· v2 NETGEAR Multiple Routers httpd Missing Authentication for Critical Function Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected install...Show more |
1Netgear 52D6220 Firmware D6400 FirmwareD7000v2 Firmware+49 moreAug 14, 2025 May 7, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 NETGEAR Multiple Routers httpd Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of multiple NETGEAR...Show more |
1Netgear 15Cbr40 Firmware Lax20 FirmwareMk62 Firmware+12 moreNov 21, 2024 Sep 1, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to execute arbitrary code via crafted URL to httpd. |
1Netgear 33Cax80 Firmware Lax20 FirmwareMr60 Firmware+30 moreNov 21, 2024 Mar 29, 2023 N/A· v4 8.0 HIGH· v3 N/A· v2 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit this vulnerability, th...Show more |
1Netgear 24Cbr40 Firmware Lbr1020 FirmwareLbr20 Firmware+21 moreNov 21, 2024 Mar 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit this vulnerability, th...Show more |
1Netgear 24Cbr40 Firmware Lbr1020 FirmwareLbr20 Firmware+21 moreNov 21, 2024 Mar 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit...Show more |
1Netgear 27D6220 Firmware D6400 FirmwareD7000v2 Firmware+24 moreNov 21, 2024 Mar 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit this vulnerability. The spe...Show more |
1Netgear 33Cax80 Firmware Lax20 FirmwareMr60 Firmware+30 moreNov 21, 2024 Mar 29, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit this vulnerability. The spec...Show more |
1Netgear 6Mr60 Firmware Ms60 FirmwareR6900p Firmware+3 moreMar 21, 2025 Feb 13, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 NETGEAR Nighthawk WiFi Mesh systems and routers are affected by a stack-based buffer overflow vulnerability. This affects MR60 before 1.1.7.132, MS60 before 1.1.7.132, R6900P before 1.3.3.154, R7000P before 1.3.3.154, R7...Show more |
1Netgear 6Mr60 Firmware Ms60 FirmwareR6900p Firmware+3 moreMar 28, 2025 Jan 31, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Netgear routers R7000P before v1.3.3.154, R6900P before v1.3.3.154, R7960P before v1.4.4.94, and R8000P before v1.4.4.94 were discovered to contain a pre-authentication stack overflow. |
1Netgear 9R6400v2 Firmware R6700v3 FirmwareR6900p Firmware+6 moreApr 10, 2025 Dec 30, 2022 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects RAX40 before 1.0.2.60, RAX35 before 1.0.2.60, R6400v2 before 1.0.4.122, R6700v3 before 1.0.4.122, R6900P before 1.3.3...Show more |
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_sec. |