Netgear
netgear
1,334 CVEs • 1,110 products
Products (1,110)
Click to collapseToggle
Products (1,110)
Click to collapse
CVEs (1,334)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
6Cisco NetgearSamsung+3 more6Gs1900 10hp Firmware Ios XeJr6150 Firmware+3 moreMay 6, 2026 Mar 26, 2016 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821. |
7Cisco LenovoNetgear+4 more7Gs1900 10hp Firmware Ios XeJr6150 Firmware+4 moreMay 6, 2026 Mar 26, 2016 N/A· v4 5.9 MEDIUM· v3 7.1 HIGH· v2 The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 through 3.17 allows remote attackers to cause a denial of service (device reload) via fragmented packets, aka Bug ID CSCux38417. |
6Cisco NetgearSamsung+3 more7Gs1900 10hp Firmware Jr6150 FirmwareKeymouse Firmware+4 moreMay 6, 2026 Mar 3, 2016 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted...Show more |
1Netgear 1Prosafe Network Management Software 300 May 6, 2026 Feb 13, 2016 N/A· v4 8.6 HIGH· v3 7.8 HIGH· v2 Directory traversal vulnerability in data/config/image.do in NETGEAR Management System NMS300 1.5.0.11 and earlier allows remote authenticated users to read arbitrary files via a .. (dot dot) in the realName parameter. |
1Netgear 1Prosafe Network Management Software 300 May 6, 2026 Feb 13, 2016 N/A· v4 9.6 CRITICAL· v3 8.3 HIGH· v2 Multiple unrestricted file upload vulnerabilities in NETGEAR Management System NMS300 1.5.0.11 and earlier allow remote attackers to execute arbitrary Java code by using (1) fileUpload.do or (2) lib-1.0/external/flash/fi...Show more |
1Netgear 2Wnr1000v3 Wnr1000v3 FirmwareMay 6, 2026 Dec 27, 2015 N/A· v4 8.6 HIGH· v3 5.0 MEDIUM· v2 NETGEAR WNR1000v3 devices with firmware 1.0.2.68 use the same source port number for every DNS query, which makes it easier for remote attackers to spoof responses by selecting that number for the destination port. |
The NETGEAR ProSafe Plus Configuration Utility creates configuration backup files containing cleartext passwords, which might allow remote attackers to obtain sensitive information by reading a file. |
3Acme DlinkNetgear5Dsl2740u Dsl2750uMicro Httpd+2 moreMay 6, 2026 Jul 24, 2014 N/A· v4 N/A· v3 7.8 HIGH· v2 Buffer overflow in ACME micro_httpd, as used in D-Link DSL2750U and DSL2740U and NetGear WGR614 and MR-ADSL-DG834 routers allows remote attackers to cause a denial of service (crash) via a long string in the URI in a GET...Show more |
NETGEAR GS108PE Prosafe Plus switches with firmware 1.2.0.5 have a hardcoded password of debugpassword for the ntgruser account, which allows remote attackers to upload firmware or read or modify memory contents, and con...Show more |
Multiple cross-site scripting (XSS) vulnerabilities in NETGEAR WNDR4700 with firmware 1.0.0.34 allow remote authenticated users to inject arbitrary web script or HTML via the (1) UserName or (2) Password to the NAS User...Show more |
1Netgear 5Prosafe Firmware Prosafe Gs510tpProsafe Gs724t+2 moreApr 29, 2026 Dec 19, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier, GS748Tv4 5.4.1.14, and GS510TP 5.0.4.4 allows remote attackers to cause a denial of service (reboot or crash) via a crafted HTTP request to filesy...Show more |
1Netgear 11Prosafe Firmware Prosafe Gs510tpProsafe Gs724t+8 moreApr 29, 2026 Dec 19, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 NETGEAR ProSafe GS724Tv3 and GS716Tv2 with firmware 5.4.1.13 and earlier; GS748Tv4 with firmware 5.4.1.14; GS510TP with firmware 5.4.0.6; GS752TPS, GS728TPS, GS728TS, and GS725TS with firmware 5.3.0.17; and GS752TXS and...Show more |
Cross-site request forgery (CSRF) vulnerability in frontview/lib/np_handler.pl in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to hijack the authentication of users. |
Eval injection vulnerability in frontview/lib/np_handler.pl in the FrontView web interface in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to execute arbitrary Perl code via a...Show more |
The default configuration of the NETGEAR ProSafe FVS318N firewall enables web-based administration on the WAN interface, which allows remote attackers to establish an HTTP connection and possibly have unspecified other i...Show more |
1Netgear 2Prosafe Wnap210 Prosafe Wnap210 FirmwareApr 29, 2026 Apr 10, 2011 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The NetGear ProSafe WNAP210 with firmware 2.0.12 allows remote attackers to bypass authentication and obtain access to the configuration page by visiting recreate.php and then visiting index.php. |
1Netgear 2Prosafe Wnap210 Prosafe Wnap210 FirmwareApr 29, 2026 Apr 10, 2011 N/A· v4 N/A· v3 5.0 MEDIUM· v2 BackupConfig.php on the NetGear ProSafe WNAP210 allows remote attackers to obtain the administrator password by reading the configuration file. |
2Atheros Netgear2Ar9160 Bc1a Chipset Wndap330 FirmwareApr 23, 2026 Nov 12, 2009 N/A· v4 N/A· v3 5.5 MEDIUM· v2 The Atheros wireless driver, as used in Netgear WNDAP330 Wi-Fi access point with firmware 2.1.11 and other versions before 3.0.3 on the Atheros AR9160-BC1A chipset, and other products, allows remote authenticated users t...Show more |
Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage...Show more |
The administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to bypass authentication via a direct request to (1) gateway/commands/saveconfig.html, and (2) stattbl.htm, (3) modemme...Show more |