Vulnerabilities > Netgear

DATE CVE VULNERABILITY TITLE RISK
2020-04-23 CVE-2018-21138 Unspecified vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear
8.8
2020-04-23 CVE-2018-21137 Use of Hard-coded Credentials vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by a hardcoded password.
network
low complexity
netgear CWE-798
critical
9.8
2020-04-23 CVE-2018-21136 Information Exposure vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by disclosure of sensitive information.
low complexity
netgear CWE-200
4.6
2020-04-23 CVE-2018-21135 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
network
low complexity
netgear CWE-787
7.2
2020-04-23 CVE-2018-21134 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2020-04-23 CVE-2018-21133 Out-of-bounds Write vulnerability in Netgear Wac505 Firmware and Wac510 Firmware
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2020-04-23 CVE-2018-21132 Missing Authentication for Critical Function vulnerability in Netgear Wac505 Firmware and Wac510 Firmware
Certain NETGEAR devices are affected by authentication bypass.
network
low complexity
netgear CWE-306
critical
9.8
2020-04-23 CVE-2018-21131 Unspecified vulnerability in Netgear Wac505 Firmware and Wac510 Firmware
Certain NETGEAR devices are affected by unauthenticated firmware downgrade.
network
low complexity
netgear
critical
9.1
2020-04-23 CVE-2018-21110 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8
2020-04-23 CVE-2018-21109 OS Command Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.60 are affected by command injection by an authenticated user.
low complexity
netgear CWE-78
6.8