Vulnerabilidades em Netgear

211 resultados
Análise Vexday

O histórico de vulnerabilidades da Netgear soma 68 CVEs catalogadas, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada registrada no CISA KEV. Ainda assim, o cenário não é isento de atenção: a CVE-2024-6646, com escore EPSS de 0,46 (o mais alto observado no conjunto), indica probabilidade relevante de exploração e merece acompanhamento prioritário. O tipo de falha mais recorrente é CWE-119 (erros de limitação de operações dentro de um buffer de memória), categoria historicamente associada a impacto elevado em dispositivos de rede e embarcados. Com 3 vulnerabilidades críticas e 2 com PoC pública disponível, o risco de escalada existe, especialmente em ambientes onde patches de firmware são aplicados com menor frequência.

CVE-2026-11733LOWBuffer overflow vulnerability in some NETGEAR Nighthawk routersEPSS 0.5%CVE-2026-11735LOWStack-based buffer overflow vulnerability in some NETGEAR Nighthawk modelsEPSS 0.5%CVE-2026-11736LOWStack-based buffer overflow vulnerability in some NETGEAR Nighthawk routersEPSS 0.5%CVE-2024-7153MEDIUMNetgear WN604 siteSurvey.php direct requestEPSS 0.5%CVE-2021-27254MEDIUMThis vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7800. Authentication is EPSS 0.5%CVE-2023-27360HIGHNETGEAR RAX30 lighttpd Misconfiguration Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-34284MEDIUMNETGEAR RAX30 Use of Hard-coded Credentials Authentication Bypass VulnerabilityEPSS 0.4%CVE-2026-9213MEDIUMInsufficient input validation in certain NETGEAR routersEPSS 0.4%CVE-2026-0405MEDIUMAuthentication Bypass in NETGEAR Orbi DevicesEPSS 0.4%CVE-2026-3088MEDIUMUnauthenticated users can disrupt router operationEPSS 0.4%CVE-2022-27644MEDIUMThis vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEPSS 0.3%CVE-2023-27370MEDIUMNETGEAR RAX30 Device Configuration Cleartext Storage Information Disclosure VulnerabilityEPSS 0.3%CVE-2021-34983MEDIUMNETGEAR Multiple Routers httpd Missing Authentication for Critical Function Information Disclosure VulnerabilityEPSS 0.3%CVE-2026-62655MEDIUMA DoS vulnerability due to stack overflow exists in certain NETGEAR Orbi modelsEPSS 0.3%CVE-2026-0403LOWInsufficient input validation in NETGEAR Orbi routersEPSS 0.3%CVE-2026-0413MEDIUMBuffer overflow vulnerability in certain NETGEAR Nighthawk routersEPSS 0.3%CVE-2021-27257MEDIUMThis vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEPSS 0.3%CVE-2026-62658MEDIUMPost-authentication Command Injection Vulnerability in certain Nighthawk RAX series modelsEPSS 0.3%CVE-2025-12942MEDIUMImproper input validation in NETGEAR R6260 and R6850EPSS 0.3%CVE-2025-12946MEDIUMImproper input validation in NETGEAR Nighthawk routersEPSS 0.3%