Vulnerabilities > Netgear > Prosafe Network Management System

DATE CVE VULNERABILITY TITLE RISK
2024-08-21 CVE-2024-6813 SQL Injection vulnerability in Netgear Prosafe Network Management System 1.7.0.34
NETGEAR ProSAFE Network Management System getSortString SQL Injection Remote Code Execution Vulnerability.
network
low complexity
netgear CWE-89
8.8
2024-08-21 CVE-2024-6814 SQL Injection vulnerability in Netgear Prosafe Network Management System 1.7.0.34
NETGEAR ProSAFE Network Management System getFilterString SQL Injection Remote Code Execution Vulnerability.
network
low complexity
netgear CWE-89
8.8
2024-06-06 CVE-2024-5505 Path Traversal vulnerability in Netgear Prosafe Network Management System
NETGEAR ProSAFE Network Management System UpLoadServlet Directory Traversal Remote Code Execution Vulnerability.
network
low complexity
netgear CWE-22
8.8
2023-11-29 CVE-2023-49693 Missing Authentication for Critical Function vulnerability in Netgear Prosafe Network Management System
NETGEAR ProSAFE Network Management System has Java Debug Wire Protocol (JDWP) listening on port 11611 and it is remotely accessible by unauthenticated users, allowing attackers to execute arbitrary code.
network
low complexity
netgear CWE-306
critical
9.8
2023-11-29 CVE-2023-49694 Unspecified vulnerability in Netgear Prosafe Network Management System
A low-privileged OS user with access to a Windows host where NETGEAR ProSAFE Network Management System is installed can create arbitrary JSP files in a Tomcat web application directory.
local
low complexity
netgear
7.8
2021-03-29 CVE-2021-27276 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
7.1
2021-03-29 CVE-2021-27275 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to disclose sensitive information and delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
8.3
2021-03-29 CVE-2021-27274 Unrestricted Upload of File with Dangerous Type vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-434
critical
9.8
2021-03-29 CVE-2021-27273 OS Command Injection vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-78
8.8
2021-03-29 CVE-2021-27272 Path Traversal vulnerability in Netgear Prosafe Network Management System 1.6.0.26
This vulnerability allows remote attackers to delete arbitrary files on affected installations of NETGEAR ProSAFE Network Management System 1.6.0.26.
network
low complexity
netgear CWE-22
7.1