Vulnerabilities > Netgear > R6300 Firmware > 1.0.4.36

DATE CVE VULNERABILITY TITLE RISK
2022-09-07 CVE-2022-30078 OS Command Injection vulnerability in Netgear R6200 Firmware and R6300 Firmware
NETGEAR R6200_V2 firmware versions through R6200v2-V1.0.3.12_10.1.11 and R6300_V2 firmware versions through R6300v2-V1.0.4.52_10.0.93 allow remote authenticated attackers to execute arbitrary command via shell metacharacters in the ipv6_fix.cgi ipv6_wan_ipaddr, ipv6_lan_ipaddr, ipv6_wan_length, or ipv6_lan_length parameters.
network
low complexity
netgear CWE-78
8.8
2021-12-26 CVE-2021-45604 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
low complexity
netgear CWE-787
2.7