Vulnerabilities > Netgear > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-09 CVE-2020-26917 Cross-site Scripting vulnerability in Netgear products
Certain NETGEAR devices are affected by stored XSS.
network
low complexity
netgear CWE-79
4.8
2020-10-09 CVE-2020-26916 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear
6.3
2020-10-09 CVE-2020-26915 Cross-site Scripting vulnerability in Netgear products
Certain NETGEAR devices are affected by stored XSS.
network
low complexity
netgear CWE-79
4.8
2020-10-09 CVE-2020-26913 Out-of-bounds Write vulnerability in Netgear products
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user.
low complexity
netgear CWE-787
6.8
2020-10-09 CVE-2020-26910 Command Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection by an authenticated user.
low complexity
netgear CWE-77
6.8
2020-10-09 CVE-2020-26901 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
low complexity
netgear
6.5
2020-10-09 CVE-2020-26899 Unspecified vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
low complexity
netgear
6.5
2020-08-28 CVE-2020-5621 Cross-Site Request Forgery (CSRF) vulnerability in Netgear Gs716Tv2 Firmware and Gs724Tv3 Firmware
Cross-site request forgery (CSRF) vulnerability in NETGEAR switching hubs (GS716Tv2 Firmware version 5.4.2.30 and earlier, and GS724Tv3 Firmware version 5.4.2.30 and earlier) allow remote attackers to hijack the authentication of administrators and alter the settings of the device via unspecified vectors.
network
low complexity
netgear CWE-352
4.3
2020-08-20 CVE-2020-15634 Unspecified vulnerability in Netgear R6700 Firmware
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 routers with firmware 1.0.4.84_10.0.58.
low complexity
netgear
6.3
2020-07-28 CVE-2020-15417 Unspecified vulnerability in Netgear R6700 Firmware 1.0.4.8410.0.58
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers.
low complexity
netgear
6.3