Vulnerabilities > Netgear > R7000P Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-09-01 CVE-2023-36187 Classic Buffer Overflow vulnerability in Netgear products
Buffer Overflow vulnerability in NETGEAR R6400v2 before version 1.0.4.118, allows remote unauthenticated attackers to execute arbitrary code via crafted URL to httpd.
network
low complexity
netgear CWE-120
critical
9.8
2023-02-13 CVE-2022-48322 Out-of-bounds Write vulnerability in Netgear products
NETGEAR Nighthawk WiFi Mesh systems and routers are affected by a stack-based buffer overflow vulnerability.
network
low complexity
netgear CWE-787
critical
9.8
2023-01-31 CVE-2022-48176 Out-of-bounds Write vulnerability in Netgear products
Netgear routers R7000P before v1.3.3.154, R6900P before v1.3.3.154, R7960P before v1.4.4.94, and R8000P before v1.4.4.94 were discovered to contain a pre-authentication stack overflow.
local
low complexity
netgear CWE-787
7.8
2022-12-30 CVE-2022-48196 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-120
critical
9.8
2022-11-22 CVE-2022-44184 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.0.8
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_sec.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44186 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_pri.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44187 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.0.8
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via wan_dns1_pri.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44188 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.0.8
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter enable_band_steering.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44190 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter enable_band_steering.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44191 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameters KEY1 and KEY2.
network
low complexity
netgear CWE-787
critical
9.8