Vulnerabilities > Netgear > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-04-28 CVE-2017-18858 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command execution.
network
low complexity
netgear CWE-78
critical
9.8
2020-04-28 CVE-2017-18857 Weak Password Requirements vulnerability in Netgear Insight
The NETGEAR Insight application before 2.42 for Android and iOS is affected by password mismanagement.
network
low complexity
netgear CWE-521
critical
9.8
2020-04-27 CVE-2018-21153 Classic Buffer Overflow vulnerability in Netgear products
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-120
critical
9.8
2020-04-27 CVE-2018-21097 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2020-04-23 CVE-2018-21162 OS Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker.
network
low complexity
netgear CWE-78
critical
9.8
2020-04-23 CVE-2018-21161 Unspecified vulnerability in Netgear D7800 Firmware, R7800 Firmware and R9000 Firmware
Certain NETGEAR devices are affected by incorrect configuration of security settings.
network
low complexity
netgear
critical
9.8
2020-04-23 CVE-2018-21137 Use of Hard-coded Credentials vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by a hardcoded password.
network
low complexity
netgear CWE-798
critical
9.8
2020-04-23 CVE-2018-21134 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2020-04-23 CVE-2018-21133 Out-of-bounds Write vulnerability in Netgear Wac505 Firmware and Wac510 Firmware
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker.
network
low complexity
netgear CWE-787
critical
9.8
2020-04-23 CVE-2018-21132 Missing Authentication for Critical Function vulnerability in Netgear Wac505 Firmware and Wac510 Firmware
Certain NETGEAR devices are affected by authentication bypass.
network
low complexity
netgear CWE-306
critical
9.8