Vulnerabilities > Netgear > R8900 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2019-20680 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
8.0
2020-04-15 CVE-2020-11792 Improper Certificate Validation vulnerability in Netgear products
NETGEAR R8900, R9000, RAX120, and XR700 devices before 2020-01-20 are affected by Transport Layer Security (TLS) certificate private key disclosure.
network
low complexity
netgear CWE-295
7.5
2020-04-15 CVE-2019-20650 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by denial of service.
network
low complexity
netgear
7.5
2020-04-15 CVE-2020-11770 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
network
low complexity
netgear CWE-77
8.8
2020-04-15 CVE-2019-20767 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
network
low complexity
netgear CWE-787
7.2