R6230 Firmware
NETGEAR · 32 CVEs
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS c…
Jan 28, 2026
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the…
Jan 28, 2026
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R67…
Mar 29, 2023
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of multiple NET…
Jan 25, 2022
Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0…
Dec 26, 2021
Certain NETGEAR devices are affected by authentication bypass. This affects AC2100 before 2021-08-27, AC2400 before 202…
Dec 26, 2021
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects AC2100 before 1.2.0.88…
Dec 26, 2021
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.40…
Dec 26, 2021
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.7…
Dec 26, 2021
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.7…
Dec 26, 2021
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.…
Dec 26, 2021
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EAX80 before 1.0.1.62, EX7000…
Dec 26, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.…
Dec 26, 2021
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.…
Dec 26, 2021
Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b…
Dec 26, 2021
Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.4…
Aug 11, 2021
Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 be…
Aug 10, 2021
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R6700v3 before 1.0.4.9…
Mar 23, 2021
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R60…
Feb 11, 2021
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R602…
Feb 11, 2021
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NET…
Feb 4, 2021
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R745…
Feb 4, 2021
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D360…
Dec 29, 2020
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000…
Dec 29, 2020
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.…
Dec 29, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2022-40620 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS certificates when downloading update pack… | HIGH | 0.30% | Jan 28, 2026 |
| CVE-2022-40619 | FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the LAN interface of affected devices. This… | HIGH | 2.54% | Jan 28, 2026 |
| CVE-2022-27641 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authenti… | HIGH | 1.24% | Mar 29, 2023 |
| CVE-2021-34865 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of multiple NETGEAR routers. Authentication is not requ… | HIGH | 3.08% | Jan 25, 2022 |
| CVE-2021-45501 | Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000 before 1.0.1.82, R6020 before… | CRITICAL | 1.87% | Dec 26, 2021 |
| CVE-2021-45511 | Certain NETGEAR devices are affected by authentication bypass. This affects AC2100 before 2021-08-27, AC2400 before 2021-08-27, AC2600 before 2021-08-27, D7000… | CRITICAL | 17.64% | Dec 26, 2021 |
| CVE-2021-45534 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects AC2100 before 1.2.0.88, AC2400 before 1.2.0.88, AC2600 before… | HIGH | 1.09% | Dec 26, 2021 |
| CVE-2021-45551 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.… | HIGH | 1.51% | Dec 26, 2021 |
| CVE-2021-45640 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, D6200 before 1… | HIGH | 0.62% | Dec 26, 2021 |
| CVE-2021-45641 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, D6200 before 1… | HIGH | 0.69% | Dec 26, 2021 |
| CVE-2021-45644 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.88, AC2400 before 1.2.0.88, AC2600 befor… | CRITICAL | 1.08% | Dec 26, 2021 |
| CVE-2021-45647 | Certain NETGEAR devices are affected by disclosure of sensitive information. This affects EAX80 before 1.0.1.62, EX7000 before 1.0.1.104, R6120 before 1.0.0.76… | HIGH | 1.30% | Dec 26, 2021 |
| CVE-2021-45656 | Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before… | HIGH | 0.31% | Dec 26, 2021 |
| CVE-2021-45657 | Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before… | HIGH | 0.34% | Dec 26, 2021 |
| CVE-2021-45672 | Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R… | MEDIUM | 0.36% | Dec 26, 2021 |
| CVE-2021-38516 | Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before… | CRITICAL | 1.34% | Aug 11, 2021 |
| CVE-2021-38534 | Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 before 1.0.0.60, D6200 before 1.1.00.36, D… | MEDIUM | 0.51% | Aug 10, 2021 |
| CVE-2021-29068 | Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R6700v3 before 1.0.4.98, R6400v2 before 1.0.4.98, R7000 before… | CRITICAL | 1.05% | Mar 23, 2021 |
| CVE-2020-27867 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2,… | MEDIUM | 2.23% | Feb 11, 2021 |
| CVE-2020-27866 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2,… | HIGH | 8.66% | Feb 11, 2021 |
| CVE-2020-27873 | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authe… | MEDIUM | 0.62% | Feb 4, 2021 |
| CVE-2020-27872 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication… | HIGH | 0.90% | Feb 4, 2021 |
| CVE-2020-35799 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.78… | CRITICAL | 1.20% | Dec 29, 2020 |
| CVE-2020-35803 | Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.46,… | MEDIUM | 0.32% | Dec 29, 2020 |
| CVE-2020-35795 | Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 b… | CRITICAL | 1.20% | Dec 29, 2020 |
Showing 1 to 25 of 32 CVEs