← Back

Netgear

netgear

1,334 CVEs • 1,110 products

Products (1,110)

Click to collapse
Toggle
Mr60 Firmware
mr60_firmware
Ms60 Firmware
ms60_firmware

CVEs (1,334)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Netgear
1Nms300 Firmware
Jun 17, 2026
Dec 30, 2020
N/A· v4
6.5 MEDIUM· v3
4.0 MEDIUM· v2
NETGEAR NMS300 devices before 1.6.0.27 are affected by denial of service.
1Netgear
1Nms300 Firmware
Jun 17, 2026
Dec 30, 2020
N/A· v4
8.6 HIGH· v3
7.8 HIGH· v2
NETGEAR NMS300 devices before 1.6.0.27 are affected by denial of service.
1Netgear
2Gs716t Firmware
Gs724t Firmware
Jun 17, 2026
Dec 30, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Certain NETGEAR devices are affected by CSRF. This affects GS716Tv3 before 6.3.1.36 and GS724Tv4 before 6.3.1.36.
1Netgear
1Dgn2200v1 Firmware
Jun 17, 2026
Dec 30, 2020
N/A· v4
8.4 HIGH· v3
7.7 HIGH· v2
NETGEAR DGN2200v1 devices before v1.0.0.58 are affected by command injection.
1Netgear
1Gs108ev3 Firmware
Jun 17, 2026
Nov 24, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
Cross-site request forgery (CSRF) vulnerability in GS108Ev3 firmware version 2.06.10 and earlier allows remote attackers to hijack the authentication of administrators and the product's settings may be changed without th...Show more
Cross-site request forgery (CSRF) vulnerability in GS108Ev3 firmware version 2.06.10 and earlier allows remote attackers to hijack the authentication of administrators and the product's settings may be changed without the user's intention or consent via unspecified vectors.Show less
1Netgear
13R6250 Firmware
R6400 FirmwareR6400v2 Firmware+10 more
Jun 17, 2026
Nov 9, 2020
N/A· v4
8.8 HIGH· v3
8.3 HIGH· v2
upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0.4.102_10.0.75, R6400 V1.0.1.62_1.0.41, R7000P V1.3.2.126_10.1.66, XR30...Show more
upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0.4.102_10.0.75, R6400 V1.0.1.62_1.0.41, R7000P V1.3.2.126_10.1.66, XR300 V1.0.3.50_10.3.36, R8000 V1.0.4.62, R8300 V1.0.2.136, R8500 V1.0.2.136, R7300DST V1.0.0.74, R7850 V1.0.5.64, R7900 V1.0.4.30, RAX20 V1.0.2.64, RAX80 V1.0.3.102, and R6250 V1.0.4.44.Show less
1Netgear
1Nighthawk R7000 Firmware
Jun 17, 2026
Nov 2, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The SIP ALG implementation on NETGEAR Nighthawk R7000 1.0.9.64_10.2.64 devices allows remote attackers to communicate with arbitrary TCP and UDP services on a victim's intranet machine, if the victim visits an attacker-c...Show more
The SIP ALG implementation on NETGEAR Nighthawk R7000 1.0.9.64_10.2.64 devices allows remote attackers to communicate with arbitrary TCP and UDP services on a victim's intranet machine, if the victim visits an attacker-controlled web site with a modern browser, aka NAT Slipstreaming. This occurs because the ALG takes action based on an IP packet with an initial REGISTER substring in the TCP data, and the correct intranet IP address in the subsequent Via header, without properly considering that connection progress and fragmentation affect the meaning of the packet data.Show less
1Netgear
11Jnr3210 Firmware
R6020 FirmwareR6080 Firmware+8 more
Jun 17, 2026
Oct 13, 2020
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R6120, R6080, R6260, R6220, R6020, JNR3210, and WNR2020 routers with firmware 1.0.66. Authentica...Show more
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R6120, R6080, R6260, R6220, R6020, JNR3210, and WNR2020 routers with firmware 1.0.66. Authentication is not required to exploit this vulnerability. The specific flaw exists within the mini_httpd service, which listens on TCP port 80 by default. The issue results from incorrect string matching logic when accessing protected pages. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-10754.Show less
1Netgear
3Wc7500 Firmware
Wc7600 FirmwareWc9500 Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.
1Netgear
1Ex7700 Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
3.8 LOW· v3
5.5 MEDIUM· v2
NETGEAR EX7700 devices before 1.0.0.210 are affected by incorrect configuration of security settings.
1Netgear
2R6220 Firmware
R6230 Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
8.0 HIGH· v3
5.2 MEDIUM· v2
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6220 before 1.1.0.100 and R6230 before 1.1.0.100.
1Netgear
7Cbr40 Firmware
Rbk752 FirmwareRbk852 Firmware+4 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
9.6 CRITICAL· v3
5.8 MEDIUM· v2
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10....Show more
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.Show less
1Netgear
17Ac2100 Firmware
Ac2400 FirmwareAc2600 Firmware+14 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R612...Show more
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, R6220 before 1.1.0.100, R6260 before 1.1.0.66, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, AC2100 before 1.2.0.62, AC2400 before 1.2.0.62, AC2600 before 1.2.0.62, R7450 before 1.2.0.62, and WNR2020 before 1.1.0.62.Show less
1Netgear
7Cbr40 Firmware
Rbk752 FirmwareRbk852 Firmware+4 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
9.6 CRITICAL· v3
5.8 MEDIUM· v2
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10....Show more
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.Show less
1Netgear
1Gs808e Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
3.2 LOW· v3
2.1 LOW· v2
NETGEAR GS808E devices before 1.7.1.0 are affected by denial of service.
1Netgear
2Wac720 Firmware
Wac730 Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
6.5 MEDIUM· v3
3.3 LOW· v2
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects WAC720 before 3.9.1.13 and WAC730 before 3.9.1.13.
1Netgear
4Wc7500 Firmware
Wc7600 FirmwareWc7600v2 Firmware+1 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
Certain NETGEAR devices are affected by stored XSS. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.
1Netgear
4Wc7500 Firmware
Wc7600 FirmwareWc7600v2 Firmware+1 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
6.7 MEDIUM· v3
4.6 MEDIUM· v2
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects WC7500 before 6.5.5.24, WC7600 before 6.5.5.24, WC7600v2 before 6.5.5.24, and WC9500 before 6.5.5.24.
1Netgear
4Gs110emx Firmware
Gs810emx FirmwareXs512em Firmware+1 more
Jun 17, 2026
Oct 9, 2020
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Certain NETGEAR devices are affected by authentication bypass. This affects GS110EMX before 1.0.1.7, GS810EMX before 1.7.1.3, XS512EM before 1.0.1.3, and XS724EM before 1.0.1.3.
1Netgear
3Srk60 Firmware
Srr60 FirmwareSrs60 Firmware
Jun 17, 2026
Oct 9, 2020
N/A· v4
8.8 HIGH· v3
5.8 MEDIUM· v2
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5.3.110, SRR60 before 2.5.3.110, and SRS60 before 2.5.3.110.