Vulnerabilidades em Netgear

211 resultados
Análise Vexday

O histórico de vulnerabilidades da Netgear soma 68 CVEs catalogadas, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada registrada no CISA KEV. Ainda assim, o cenário não é isento de atenção: a CVE-2024-6646, com escore EPSS de 0,46 (o mais alto observado no conjunto), indica probabilidade relevante de exploração e merece acompanhamento prioritário. O tipo de falha mais recorrente é CWE-119 (erros de limitação de operações dentro de um buffer de memória), categoria historicamente associada a impacto elevado em dispositivos de rede e embarcados. Com 3 vulnerabilidades críticas e 2 com PoC pública disponível, o risco de escalada existe, especialmente em ambientes onde patches de firmware são aplicados com menor frequência.

CVE-2024-1430MEDIUMNetgear R7000 Web Management Interface currentsetting.htm information disclosureEPSS 0.6%CVE-2025-4980MEDIUMNetgear DGND3700 mini_http currentsetting.htm information disclosureEPSS 0.6%CVE-2025-4977MEDIUMNetgear DGND3700 BRS_top.html information disclosureEPSS 0.6%CVE-2020-27873MEDIUMThis vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R7450 1.2.0.62_1EPSS 0.6%CVE-2022-38458MEDIUMA cleartext transmission vulnerability exists in the Remote Management functionality of Netgear Orbi Router RBR750 4.6.8.5. A specially-crafEPSS 0.6%CVE-2023-2386LOWNetgear SRX5308 Web Management Interface cross site scriptingEPSS 0.6%CVE-2023-2387LOWNetgear SRX5308 Web Management Interface cross site scriptingEPSS 0.6%CVE-2023-2388LOWNetgear SRX5308 Web Management Interface cross site scriptingEPSS 0.6%CVE-2023-2381LOWNetgear SRX5308 Web Management Interface cross site scriptingEPSS 0.6%CVE-2026-11734LOWDevice administrator can interrupt the normal operation of some NETGEAR Nighthawk devices.EPSS 0.6%CVE-2023-24498HIGHNetgear ProSAFE 24 Port 10/100 FS726TP - CWE-522: Insufficiently Protected Credentials.EPSS 0.6%CVE-2021-34982HIGHNETGEAR Multiple Routers httpd Stack-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.6%CVE-2025-4117MEDIUMNetgear JWNR2000v2 sub_41A914 buffer overflowEPSS 0.6%CVE-2023-51634HIGHNETGEAR RAX30 Improper Certificate Validation Remote Code Execution VulnerabilityEPSS 0.6%CVE-2023-27357MEDIUMNETGEAR RAX30 GetInfo Missing Authentication Information Disclosure VulnerabilityEPSS 0.6%CVE-2024-5245HIGHNETGEAR ProSAFE Network Management System Default Credentials Local Privilege Escalation VulnerabilityEPSS 0.6%CVE-2024-4235LOWNetgear DG834Gv5 Web Management Interface cleartext storageEPSS 0.6%CVE-2021-34947HIGHNETGEAR R7800 net-cgi Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.5%CVE-2023-49694HIGHNETGEAR ProSAFE Network Management System Privilege Escalation Via MySQL ServerEPSS 0.5%CVE-2024-1431MEDIUMNetgear R7000 Web Management Interface debuginfo.htm information disclosureEPSS 0.5%