← Back

Corega

corega

16 CVEs • 19 products

Products (19)

Click to collapse
Toggle

CVEs (16)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Corega
1Cg Wgr 1200 Firmware
Nov 21, 2024
Mar 9, 2018
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to bypass authentication and change the login password via unspecified vectors.
1Corega
1Cg Wgr 1200 Firmware
Nov 21, 2024
Mar 9, 2018
N/A· v4
8.8 HIGH· v3
8.3 HIGH· v2
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary commands via unspecified vectors.
1Corega
1Cg Wgr 1200 Firmware
Nov 21, 2024
Mar 9, 2018
N/A· v4
8.8 HIGH· v3
8.3 HIGH· v2
Buffer overflow in Corega CG-WGR1200 firmware 2.20 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
1Corega
1Wlr 300 Nm Firmware
May 13, 2026
Sep 15, 2017
N/A· v4
6.8 MEDIUM· v3
7.7 HIGH· v2
Buffer overflow in CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary code via unspecified vectors.
1Corega
1Wlr 300 Nm Firmware
May 13, 2026
Sep 15, 2017
N/A· v4
6.8 MEDIUM· v3
7.7 HIGH· v2
CG-WLR300NM Firmware version 1.90 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors.
1Corega
1Cg Wlr300nx Firmware
May 13, 2026
Jun 9, 2017
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Corega CG-WLR300NX firmware Ver. 1.20 and earlier allows an attacker on the same network segment to bypass access restriction to perform arbitrary operations via unspecified vectors.
1Corega
1Cg Wlr300nx Firmware
May 13, 2026
Jun 9, 2017
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Cross-site scripting vulnerability in Corega CG-WLR300NX firmware Ver. 1.20 and earlier allows attacker with administrator rights to inject arbitrary web script or HTML via unspecified vectors.
1Corega
1Cg Wlr300nx Firmware
May 13, 2026
Jun 9, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver. 1.20 and earlier allows remote attackers to hijack the authentication of logged in user to conduct unintended operations via unspecified...Show more
Cross-site request forgery (CSRF) vulnerability in Corega CG-WLR300NX firmware Ver. 1.20 and earlier allows remote attackers to hijack the authentication of logged in user to conduct unintended operations via unspecified vectors.Show less
1Corega
2Cg Wlbaragm Firmware
Cg Wlbargnl Firmware
May 13, 2026
Jun 9, 2017
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site scripting vulnerability in Corega CG-WLBARGMH and CG-WLBARGNL allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
1Corega
2Cg Wlr300gnv W Firmware
Cg Wlr300gnv Firmware
May 6, 2026
Jun 25, 2016
N/A· v4
5.3 MEDIUM· v3
5.0 MEDIUM· v2
The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authentication attempts, which makes it easier for remote attackers to obtain network a...Show more
The Wi-Fi Protected Setup (WPS) implementation on Corega CG-WLR300GNV and CG-WLR300GNV-W devices does not restrict the number of PIN authentication attempts, which makes it easier for remote attackers to obtain network access via a brute-force attack.Show less
1Corega
1Cg Wlbaragm Firmware
May 6, 2026
Jun 25, 2016
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Corega CG-WLBARAGM devices allow remote attackers to cause a denial of service (reboot) via unspecified vectors.
1Corega
1Cg Wlbargl Firmware
May 6, 2026
Jun 25, 2016
N/A· v4
8.0 HIGH· v3
5.2 MEDIUM· v2
Corega CG-WLBARGL devices allow remote authenticated users to execute arbitrary commands via unspecified vectors.
1Corega
2Cg Wlbargmh Firmware
Cg Wlbargnl Firmware
May 6, 2026
Mar 3, 2016
N/A· v4
8.8 HIGH· v3
5.1 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability on Corega CG-WLBARGMH and CG-WLBARGNL devices allows remote attackers to hijack the authentication of administrators for requests that perform administrative functions.
1Corega
1Cg Wlncm4g Firmware
May 6, 2026
Dec 30, 2015
N/A· v4
5.8 MEDIUM· v3
5.0 MEDIUM· v2
Corega CG-WLNCM4G devices provide an open DNS resolver, which allows remote attackers to cause a denial of service (traffic amplification) via crafted queries.
1Corega
1Cg Wlbaragm Firmware
May 6, 2026
Dec 30, 2015
N/A· v4
5.8 MEDIUM· v3
5.0 MEDIUM· v2
Corega CG-WLBARAGM devices provide an open proxy service, which allows remote attackers to trigger outbound network traffic via unspecified vectors.
1Corega
1Cg Wlbargs Firmware
May 6, 2026
Dec 30, 2015
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Corega CG-WLBARGS devices allow remote attackers to perform administrative operations via unspecified vectors.