Latest netgear xr300 firmware Vulnerabilities

Netgear XR300 v1.0.3.78 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters at genie_ap_wifi_change.cgi.
Netgear Xr300 Firmware=1.0.3.78
Netgear XR300
(Pwn2Own) NETGEAR R6700v3 upnpd Buffer Overflow Remote Code Execution Vulnerability
Netgear R6400 Firmware<1.0.1.78
NETGEAR R6400
Netgear R6400 Firmware<1.0.4.126
NETGEAR R6400=v2
Netgear R6700 Firmware<1.0.4.126
NETGEAR R6700=v3
and 51 more
Certain NETGEAR devices are affected by reflected XSS. This affects CBR40 before 2.5.0.10, EAX20 before 1.0.0.32, EAX80 before 1.0.1.62, EX6120 before 1.0.0.64, EX6130 before 1.0.0.44, EX7000 before 1...
Netgear Cbr40 Firmware<2.5.0.10
Netgear Cbr40
Netgear Eax20 Firmware<1.0.0.32
Netgear Eax20
Netgear Eax80 Firmware<1.0.1.62
Netgear Eax80
and 60 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX750...
Netgear Cbr40 Firmware<2.5.0.24
Netgear Cbr40
Netgear Cbr750 Firmware<4.6.3.6
Netgear Cbr750
Netgear Eax20 Firmware<1.0.0.58
Netgear Eax20
and 74 more
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D6220 before 1.0.0.66, D6400 before 1.0.0.100, D7000v2 before 1.0.0.66, D8500 before 1.0.3.58, DC...
Netgear D6220 Firmware<1.0.0.66
NETGEAR D6220
NETGEAR R6400v2<1.0.0.100
Netgear D6400
NETGEAR R6400v2<1.0.0.66
NETGEAR R6400v2
and 50 more
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D8500 before 1.0.3.58, R6250 before 1.0.4.48, R7000 before 1.0.11.116, R7100LG before 1.0.0.64, R...
Netgear D8500 Firmware<1.0.3.58
Netgear D8500
netgear R6250 Firmware<1.0.4.48
NETGEAR R6250
Netgear R7000 Firmware<1.0.11.116
NETGEAR R7000
and 14 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, LAX20...
Netgear Cbr40 Firmware<2.5.0.24
Netgear Cbr40
Netgear Cbr750 Firmware<4.6.3.6
Netgear Cbr750
Netgear Eax20 Firmware<1.0.0.58
Netgear Eax20
and 78 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 3.2.18.2, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX37...
Netgear Cbr40 Firmware<2.5.0.24
Netgear Cbr40
Netgear Cbr750 Firmware<3.2.18.2
Netgear Cbr750
Netgear Eax20 Firmware<1.0.0.58
Netgear Eax20
and 90 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, EAX20 before 1.0.0.48, EAX80 before 1.0.1.64, EX7500 before 1.0.0.72, R640...
Netgear Cbr40 Firmware<2.5.0.24
Netgear Cbr40
Netgear Eax20 Firmware<1.0.0.48
Netgear Eax20
Netgear Eax80 Firmware<1.0.1.64
Netgear Eax80
and 60 more
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects DC112A before 1.0.0.52, R6400 before 1.0.1.68, RAX200 before 1.0.3.106, WNDR3400v3 before 1.0.1.3...
Netgear Dc112a Firmware<1.0.0.52
Netgear DC112A
Netgear R6400 Firmware<1.0.1.68
NETGEAR R6400
Netgear R8300 Firmware<1.0.2.144
NETGEAR R8300
and 12 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.24, CBR750 before 4.6.3.6, EAX20 before 1.0.0.58, EAX80 before 1.0.1.68, EX750...
Netgear Cbr40 Firmware<2.5.0.24
Netgear Cbr40
Netgear Cbr750 Firmware<4.6.3.6
Netgear Cbr750
Netgear Eax20 Firmware<1.0.0.58
Netgear Eax20
and 72 more
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects R6400 before 1.0.1.68, R7000 before 1.0.11.116, R6900P before 1.3.3.140, R7000P before 1.3....
Netgear R6400 Firmware<1.0.1.68
NETGEAR R6400
Netgear R7000 Firmware<1.0.11.116
NETGEAR R7000
Netgear R6900p Firmware<1.3.3.140
Netgear R6900P
and 10 more
Netgear Rbk752 Firmware<3.2.17.12
Netgear Rbk752
Netgear Rbr750 Firmware<3.2.17.12
Netgear Rbr750
Netgear Rbs750 Firmware<3.2.17.12
Netgear Rbs750
and 66 more
Certain NETGEAR devices are affected by weak cryptography. This affects D7000v2 before 1.0.0.62, D8500 before 1.0.3.50, EX3700 before 1.0.0.84, EX3800 before 1.0.0.84, EX6120 before 1.0.0.54, EX6130 b...
Netgear D7000 Firmware<1.0.0.62
NETGEAR D7000=v2
Netgear D8500 Firmware<1.0.3.50
Netgear D8500
Netgear Ex3700 Firmware<1.0.0.84
Netgear Ex3700
and 36 more
NETGEAR R6400v2 UPnP uuid Stack-based Buffer Overflow Remote Code Execution Vulnerability
Netgear Ex3700 Firmware<1.0.0.94
Netgear Ex3700
Netgear Ex3800 Firmware<1.0.0.94
Netgear Ex3800
Netgear Ex6120 Firmware<1.0.0.66
Netgear Ex6120
and 83 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D8500 before 1.0.3.58, R6900P before 1.3.2.132, R7000P before 1.3.2.132, R7100LG before 1.0.0.64,...
Netgear D8500 Firmware<1.0.3.58
Netgear D8500
Netgear R6900p Firmware<1.3.2.132
Netgear R6900P
Netgear R7000p Firmware<1.3.2.132
Netgear R7000P
and 6 more
Certain NETGEAR devices are affected by out-of-bounds reads and writes. This affects R6400 before 1.0.1.70, RAX75 before 1.0.4.120, RAX80 before 1.0.4.120, and XR300 before 1.0.3.50.
Netgear R6400 Firmware<1.0.1.70
NETGEAR R6400
Netgear Rax75 Firmware<1.0.4.120
Netgear Rax75
Netgear Rax80 Firmware<1.0.4.120
Netgear Rax80
and 2 more
NETGEAR Multiple Routers SSDP Stack-based Buffer Overflow Remote Code Execution Vulnerability
NETGEAR Multiple Routers
Netgear D6220 Firmware<1.0.0.68
NETGEAR D6220
NETGEAR R6400v2<1.0.0.102
Netgear D6400
Netgear D7000 Firmware<1.0.0.66
and 67 more
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects CBR40 before 2.5.0.10, D6220 before 1.0.0.60, D6400 before 1.0.0.94, D7000v2 before 1.0.0.62, D85...
Netgear Cbr40 Firmware<2.5.0.10
Netgear Cbr40
Netgear D6220 Firmware<1.0.0.60
NETGEAR D6220
NETGEAR R6400v2<1.0.0.94
Netgear D6400
and 132 more
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 before 1.2.0.72, CBK40 before 2.5.0.10, CB...
Netgear Ac2100 Firmware<1.2.0.72
Netgear Ac2100
Netgear Ac2400 Firmware<1.2.0.72
Netgear Ac2400
Netgear Ac2600 Firmware<1.2.0.72
Netgear Ac2600
and 148 more
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 before 1.2.0.72, CBK40 before 2.5.0.10, CBR40 ...
Netgear Ac2100 Firmware<1.2.0.72
Netgear Ac2100
Netgear Ac2400 Firmware<1.2.0.72
Netgear Ac2400
Netgear Ac2600 Firmware<1.2.0.72
Netgear Ac2600
and 248 more
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700v3 before 1.0.4.84, R6900P before 1.3.2.124, R7000 before 1.0.11.10...
Netgear R6400v2 Firmware<1.0.4.84
NETGEAR R6400v2
Netgear R6700v3 Firmware<1.0.4.84
NETGEAR R6700v3
Netgear R6900p Firmware<1.3.2.124
Netgear R6900P
and 54 more
upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overflow. This affects R6400v2 V1.0.4.102_10.0.75, R6400 V1.0.1.62_1.0.41, R7000P V1.3...
Netgear R6400v2 Firmware=1.0.4.102_10.0.75
NETGEAR R6400v2
Netgear R6400 Firmware=1.0.1.62_1.0.41
NETGEAR R6400
Netgear R7000p Firmware=1.3.2.126_10.1.66
Netgear R7000P
and 20 more
Certain NETGEAR devices are affected by Missing SSL Certificate Validation. This affects R7000 1.0.9.6_1.2.19 through 1.0.11.100_10.2.10, and possibly R6120, R7800, R6220, R8000, R6350, R9000, R6400, ...
Netgear R6120 Firmware>=v1.0.9.6_1.2.19<=v1.0.11.100_10.2.100
NETGEAR R6120
Netgear R6220 Firmware>=v1.0.9.6_1.2.19<=v1.0.11.100_10.2.100
NETGEAR R6220
Netgear R6350 Firmware>=v1.0.9.6_1.2.19<=v1.0.11.100_10.2.100
Netgear R6350
and 23 more

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203