Vulnerabilities > Netgear > R7000 Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-10-14 CVE-2024-35520 Command Injection vulnerability in Netgear R7000 Firmware 1.0.11.136
Netgear R7000 1.0.11.136 is vulnerable to Command Injection in RMT_invite.cgi via device_name2 parameter.
low complexity
netgear CWE-77
6.8
2024-02-11 CVE-2024-1431 Unspecified vulnerability in Netgear R7000 Firmware 1.0.11.13610.2.120
A vulnerability was found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic.
low complexity
netgear
6.5
2024-02-11 CVE-2024-1430 Unspecified vulnerability in Netgear R7000 Firmware 1.0.11.13610.2.120
A vulnerability has been found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic.
low complexity
netgear
6.5
2023-09-01 CVE-2023-36187 Classic Buffer Overflow vulnerability in Netgear products
Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to execute arbitrary code via crafted URL to httpd.
network
low complexity
netgear CWE-120
critical
9.8
2023-03-29 CVE-2022-27641 Integer Overflow or Wraparound vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-190
8.8
2023-03-29 CVE-2022-27642 Incorrect Authorization vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-863
8.8
2023-03-29 CVE-2022-27643 Classic Buffer Overflow vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-120
8.8
2023-03-29 CVE-2022-27644 Improper Certificate Validation vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-295
8.8
2023-03-29 CVE-2022-27646 Stack-based Buffer Overflow vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-121
8.8
2023-03-29 CVE-2022-27647 OS Command Injection vulnerability in Netgear products
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers.
low complexity
netgear CWE-78
8.0