Vulnerabilities > Netgear > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-04-21 CVE-2018-21140 Improper Input Validation vulnerability in Netgear D3600 Firmware and D6000 Firmware
Certain NETGEAR devices are affected by incorrect configuration of security settings.
low complexity
netgear CWE-20
6.5
2020-04-21 CVE-2017-18801 Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection.
local
low complexity
netgear CWE-74
6.7
2020-04-21 CVE-2017-18800 Cross-site Scripting vulnerability in Netgear R6700 Firmware and R6800 Firmware
Certain NETGEAR devices are affected by reflected XSS.
local
low complexity
netgear CWE-79
6.1
2020-04-21 CVE-2017-18798 Improper Input Validation vulnerability in Netgear products
Certain NETGEAR devices are affected by incorrect configuration of security settings.
local
low complexity
netgear CWE-20
6.2
2020-04-21 CVE-2017-18797 Information Exposure vulnerability in Netgear products
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files.
local
low complexity
netgear CWE-200
6.2
2020-04-21 CVE-2017-18796 Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection.
local
low complexity
netgear CWE-74
6.7
2020-04-21 CVE-2017-18795 Injection vulnerability in Netgear D6100 Firmware and D6220 Firmware
Certain NETGEAR devices are affected by command injection.
local
low complexity
netgear CWE-74
6.7
2020-04-21 CVE-2017-18793 Injection vulnerability in Netgear R7800 Firmware
NETGEAR R7800 devices before 1.0.2.36 are affected by command injection.
local
low complexity
netgear CWE-74
6.7
2020-04-21 CVE-2017-18790 Information Exposure vulnerability in Netgear products
Certain NETGEAR devices are affected by disclosure of sensitive information.
local
low complexity
netgear CWE-200
6.2
2020-04-21 CVE-2017-18805 Injection vulnerability in Netgear products
Certain NETGEAR devices are affected by command injection.
local
low complexity
netgear CWE-74
6.7