Vulnerabilities > Netgear

DATE CVE VULNERABILITY TITLE RISK
2005-01-17 CVE-2005-0290 Multiple vulnerability in Netgear Fvs318 2.4
NETGEAR FVS318 running firmware 2.4, and possibly other versions, allows remote attackers to bypass the filters using hex encoded URLs, as demonstrated using a hex encoded file extension.
network
low complexity
netgear
7.5
2004-12-31 CVE-2004-2557 Unspecified vulnerability in Netgear Wg602 1.7.14
NetGear WG602 (aka WG602v1) Wireless Access Point 1.7.14 has a hardcoded account of username "superman" and password "21241036", which allows remote attackers to modify the configuration.
network
low complexity
netgear
5.0
2004-12-31 CVE-2004-2556 Unspecified vulnerability in Netgear Wg602 1.04.0/1.5.67
NetGear WG602 (aka WG602v1) Wireless Access Point firmware 1.04.0 and 1.5.67 has a hardcoded account of username "super" and password "5777364", which allows remote attackers to modify the configuration.
network
low complexity
netgear
5.0
2004-12-06 CVE-2004-0611 Denial Of Service vulnerability in Multiple Vendor Broadband Router Web-Based Administration
Web-Based Administration in Netgear FVS318 VPN Router allows remote attackers to cause a denial of service (no new connections) via a large number of open HTTP connections.
network
low complexity
netgear
5.0
2004-05-24 CVE-2004-2032 Unspecified vulnerability in Netgear Rp114 3.26
Netgear RP114 allows remote attackers to bypass the keyword based URL filtering by requesting a long URL, as demonstrated using a large number of %20 (hex-encoded space) sequences.
network
low complexity
netgear
7.5
2003-12-31 CVE-2003-1427 Path Traversal vulnerability in Netgear Fm114P 1.4Betarelease17
Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to read arbitrary files, such as the netgear.cfg configuration file, via a hex-encoded (%2e%2e%2f) ../ (dot dot slash) in the port parameter.
network
low complexity
netgear CWE-22
6.4
2002-12-31 CVE-2002-2355 Credentials Management vulnerability in Netgear Fm114P
Netgear FM114P firmware 1.3 wireless firewall, when configured to backup configuration information, stores DDNS (DynDNS) user name and password, MAC address filtering table and possibly other information in cleartext, which could allow local users to obtain sensitive information.
network
netgear CWE-255
7.1
2002-12-31 CVE-2002-2354 Improper Input Validation vulnerability in Netgear Fm114P
Netgear FM114P firmware 1.3 wireless firewall allows remote attackers to cause a denial of service (crash or hang) via a large number of TCP connection requests.
network
low complexity
netgear CWE-20
7.8
2002-12-31 CVE-2002-2116 Denial Of Service vulnerability in Netgear Rm356 and Rt338
Netgear RM-356 and RT-338 series SOHO routers allow remote attackers to cause a denial of service (crash) via a UDP port scan, as demonstrated using nmap.
network
low complexity
netgear
5.0
2002-12-31 CVE-2002-2020 Unspecified vulnerability in Netgear Rp114 3.26
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26 uses a default administrator password and accepts admin logins on the external interface, which allows remote attackers to gain privileges if the password is not changed.
network
low complexity
netgear
7.5