Vulnerabilities > Netgear > R7000P Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-11-22 CVE-2022-44193 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameters: starthour, startminute , endhour, and endminute.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44191 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameters KEY1 and KEY2.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44190 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow via parameter enable_band_steering.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44188 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.0.8
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter enable_band_steering.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44187 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.0.8
Netgear R7000P V1.3.0.8 is vulnerable to Buffer Overflow via wan_dns1_pri.
network
low complexity
netgear CWE-787
critical
9.8
2022-11-22 CVE-2022-44186 Out-of-bounds Write vulnerability in Netgear R7000P Firmware 1.3.1.64
Netgear R7000P V1.3.1.64 is vulnerable to Buffer Overflow in /usr/sbin/httpd via parameter wan_dns1_pri.
network
low complexity
netgear CWE-787
critical
9.8
2021-12-26 CVE-2021-45638 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2021-12-26 CVE-2021-45625 Command Injection vulnerability in Netgear R6900P Firmware, R7000P Firmware and Xr300 Firmware
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
network
low complexity
netgear CWE-77
critical
9.8
2021-12-26 CVE-2021-45624 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
network
low complexity
netgear CWE-77
critical
9.8
2021-12-26 CVE-2021-45622 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
network
low complexity
netgear CWE-77
critical
9.8