Netgear

R7000 Firmware

134 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.57%
  • Published 15.11.2021 16:15:09
  • Last modified 21.11.2024 06:11:39

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400v2 1.0.4.106_10.0.80 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the U...

Exploit
  • EPSS 6.13%
  • Published 21.09.2021 18:15:07
  • Last modified 21.11.2024 06:24:55

The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve remote code execution as root via a MitM attack. While the parental controls themselves are not enabled by default on the routers,...

  • EPSS 0.21%
  • Published 11.08.2021 00:17:58
  • Last modified 21.11.2024 06:17:23

Certain NETGEAR devices are affected by privilege escalation. This affects D8500 before 1.0.3.44, R6400v2 before 1.0.2.66, R6700 before 1.0.2.6, R6700v3 before 1.0.2.66, R6900 before 1.0.2.4, R6900P before 1.3.2.126, R7000 before 1.0.9.42, R7000P bef...

  • EPSS 0.25%
  • Published 11.08.2021 00:17:22
  • Last modified 21.11.2024 06:17:21

Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 before 1.0.0.60, D6200 before 1.1.00.36, D6220 before 1.0.0.52, D6400 before 1.0.0.86, D7000 before 1.0.1.70, D7000v2 before 1.0.0.53...

  • EPSS 0.5%
  • Published 11.08.2021 00:16:09
  • Last modified 21.11.2024 06:17:20

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.36, D7000 before 1.0.1.70, EX6200v2 before 1.0.1.78, EX7000 before 1.0.1.78...

  • EPSS 0.16%
  • Published 11.08.2021 00:15:40
  • Last modified 21.11.2024 06:17:18

Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6250 before 1.0.4.36, R6300v2 before 1.0.4.36, R6400 before 1.0.1.50, R6400v2 before 1.0.2.66, R6700v3 before 1.0.2.66, R6700 before 1.0.2.8, R6900 befo...

  • EPSS 0.44%
  • Published 11.08.2021 00:15:25
  • Last modified 21.11.2024 06:17:18

Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before 1.0.0.52, D7800 before 1.0.1.44, D8500 before 1.0.3.43, DC112A before 1.0.0.40, DGN2200v4 ...

  • EPSS 0.25%
  • Published 11.08.2021 00:15:15
  • Last modified 21.11.2024 06:17:17

Certain NETGEAR devices are affected by authentication bypass. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, D6100 before 1.0.0.63, D6200 before 1.1.00.34, D6220 before 1.0.0.48, D6400 before 1.0.0.86, D7000 before 1.0.1.70, D7000v2 befo...

Exploit
  • EPSS 18.41%
  • Published 26.04.2021 13:15:07
  • Last modified 21.11.2024 06:06:15

NETGEAR R7000 1.0.11.116 devices have a heap-based Buffer Overflow that is exploitable from the local network without authentication. The vulnerability exists within the handling of an HTTP request. An attacker can leverage this to execute code as ro...

  • EPSS 2.59%
  • Published 29.03.2021 21:15:12
  • Last modified 21.11.2024 05:57:39

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and R6700 firmware version 1.0.4.98 routers. Authentication is not required to exploit this vulnerability. The specific flaw exi...