Ac2400 Firmware
NETGEAR · 27 CVEs
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of multiple NET…
Jan 25, 2022
Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0…
Dec 26, 2021
Certain NETGEAR devices are affected by authentication bypass. This affects AC2100 before 2021-08-27, AC2400 before 202…
Dec 26, 2021
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects AC2100 before 1.2.0.88…
Dec 26, 2021
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.40…
Dec 26, 2021
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R626…
Dec 26, 2021
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R626…
Dec 26, 2021
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.…
Dec 26, 2021
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EAX80 before 1.0.1.62, EX7000…
Dec 26, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.…
Dec 26, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.…
Dec 26, 2021
Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b…
Dec 26, 2021
Certain NETGEAR devices are affected by stored XSS. This affects R6120 before 1.0.0.76, R6260 before 1.1.0.78, R6850 be…
Dec 26, 2021
Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.4…
Aug 11, 2021
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6200 before 1.1.00.…
Aug 11, 2021
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b…
Aug 10, 2021
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b…
Aug 10, 2021
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b…
Aug 10, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R6700v3 before 1.0.4.9…
Mar 23, 2021
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R60…
Feb 11, 2021
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R602…
Feb 11, 2021
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NET…
Feb 4, 2021
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R745…
Feb 4, 2021
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000…
Dec 29, 2020
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.…
Dec 29, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-34865 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of multiple NETGEAR routers. Authentication is not requ… | HIGH | 3.08% | Jan 25, 2022 |
| CVE-2021-45501 | Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000 before 1.0.1.82, R6020 before… | CRITICAL | 1.87% | Dec 26, 2021 |
| CVE-2021-45511 | Certain NETGEAR devices are affected by authentication bypass. This affects AC2100 before 2021-08-27, AC2400 before 2021-08-27, AC2600 before 2021-08-27, D7000… | CRITICAL | 17.64% | Dec 26, 2021 |
| CVE-2021-45534 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects AC2100 before 1.2.0.88, AC2400 before 1.2.0.88, AC2600 before… | HIGH | 1.09% | Dec 26, 2021 |
| CVE-2021-45551 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.… | HIGH | 1.51% | Dec 26, 2021 |
| CVE-2021-45573 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6260 before 1.1.0.76, R6800 before 1.2.0.62… | HIGH | 0.46% | Dec 26, 2021 |
| CVE-2021-45637 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6260 before 1.1.0.76, R6800 before 1.2.0.62… | CRITICAL | 1.20% | Dec 26, 2021 |
| CVE-2021-45644 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.88, AC2400 before 1.2.0.88, AC2600 befor… | CRITICAL | 1.08% | Dec 26, 2021 |
| CVE-2021-45647 | Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EAX80 before 1.0.1.62, EX7000 before 1.0.1.104, R6120 before 1.0.0.76… | HIGH | 1.30% | Dec 26, 2021 |
| CVE-2021-45656 | Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before… | HIGH | 0.31% | Dec 26, 2021 |
| CVE-2021-45657 | Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before… | HIGH | 0.34% | Dec 26, 2021 |
| CVE-2021-45672 | Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R… | MEDIUM | 0.36% | Dec 26, 2021 |
| CVE-2021-45675 | Certain NETGEAR devices are affected by stored XSS. This affects R6120 before 1.0.0.76, R6260 before 1.1.0.78, R6850 before 1.1.0.78, R6350 before 1.1.0.78, R6… | MEDIUM | 0.33% | Dec 26, 2021 |
| CVE-2021-38516 | Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before… | CRITICAL | 1.34% | Aug 11, 2021 |
| CVE-2021-38531 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before… | HIGH | 0.42% | Aug 11, 2021 |
| CVE-2021-38535 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R… | MEDIUM | 0.46% | Aug 10, 2021 |
| CVE-2021-38536 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R… | MEDIUM | 0.46% | Aug 10, 2021 |
| CVE-2021-38537 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R… | MEDIUM | 0.36% | Aug 10, 2021 |
| CVE-2021-29068 | Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R6700v3 before 1.0.4.98, R6400v2 before 1.0.4.98, R7000 before… | CRITICAL | 1.05% | Mar 23, 2021 |
| CVE-2020-27867 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2,… | MEDIUM | 2.23% | Feb 11, 2021 |
| CVE-2020-27866 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2,… | HIGH | 8.66% | Feb 11, 2021 |
| CVE-2020-27873 | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authe… | MEDIUM | 0.62% | Feb 4, 2021 |
| CVE-2020-27872 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication… | HIGH | 0.90% | Feb 4, 2021 |
| CVE-2020-35803 | Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.46,… | MEDIUM | 0.32% | Dec 29, 2020 |
| CVE-2020-35795 | Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 b… | CRITICAL | 1.20% | Dec 29, 2020 |
Showing 1 to 25 of 27 CVEs