Vulnerabilities > Netgear

DATE CVE VULNERABILITY TITLE RISK
2021-04-14 CVE-2021-27251 Cleartext Transmission of Sensitive Information vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Nighthawk R7800.
low complexity
netgear CWE-319
8.8
2021-03-29 CVE-2021-27276 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
7.1
2021-03-29 CVE-2021-27275 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to disclose sensitive information and delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
8.3
2021-03-29 CVE-2021-27274 Unrestricted Upload of File with Dangerous Type vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-434
critical
9.8
2021-03-29 CVE-2021-27273 OS Command Injection vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-78
8.8
2021-03-29 CVE-2021-27272 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
7.1
2021-03-29 CVE-2021-27239 Stack-based Buffer Overflow vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and R6700 firmware version 1.0.4.98 routers.
low complexity
netgear CWE-121
8.8
2021-03-23 CVE-2021-29082 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
low complexity
netgear
8.8
2021-03-23 CVE-2021-29081 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
low complexity
netgear CWE-787
8.4
2021-03-23 CVE-2021-29080 Weak Password Recovery Mechanism for Forgotten Password vulnerability in Netgear products
Certain NETGEAR devices are affected by password reset by an unauthenticated attacker.
low complexity
netgear CWE-640
8.1