Vulnerabilities > Netgear > Dgn2200 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2020-12-30 CVE-2020-35785 Improper Authentication vulnerability in Netgear Dgn2200 Firmware 1.0.0.507.0.50/1.0.0.55/1.0.0.58
NETGEAR DGN2200v1 devices before v1.0.0.60 mishandle HTTPd authentication (aka PSV-2020-0363, PSV-2020-0364, and PSV-2020-0365).
low complexity
netgear CWE-287
8.8
2020-04-28 CVE-2016-11059 Information Exposure vulnerability in Netgear products
Certain NETGEAR devices are affected by password exposure.
network
low complexity
netgear CWE-200
7.5
2020-04-28 CVE-2016-11054 OS Command Injection vulnerability in Netgear Dgn2200 Firmware
NETGEAR DGN2200v4 devices before 2017-01-06 are affected by command execution and an FTP insecure root directory.
network
low complexity
netgear CWE-78
7.2
2020-04-27 CVE-2018-21156 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user.
network
low complexity
netgear CWE-120
7.2
2020-04-23 CVE-2018-21163 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
network
low complexity
netgear CWE-787
7.2
2020-04-23 CVE-2018-21139 Information Exposure vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
network
low complexity
netgear CWE-200
7.5
2020-04-22 CVE-2017-18756 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear
8.8
2020-04-22 CVE-2017-18755 Cross-Site Request Forgery (CSRF) vulnerability in Netgear products
Certain NETGEAR devices are affected by CSRF.
network
low complexity
netgear CWE-352
8.8
2020-04-22 CVE-2017-18777 Insufficiently Protected Credentials vulnerability in Netgear products
Certain NETGEAR devices are affected by administrative password disclosure.
local
low complexity
netgear CWE-522
7.8
2020-04-20 CVE-2017-18842 Cross-Site Request Forgery (CSRF) vulnerability in Netgear products
Certain NETGEAR devices are affected by CSRF.
network
low complexity
netgear CWE-352
8.8