Show filters
1,188 Total Results
Displaying 71-80 of 1,188
Sort by:
Attacker Value
Unknown
CVE-2023-38924
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear DGN3500 1.1.00.37 was discovered to contain a buffer overflow via the http_password parameter at setup.cgi.
0
Attacker Value
Unknown
CVE-2023-38922
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the update_auth function.
0
Attacker Value
Unknown
CVE-2023-38921
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the upgrade_handler function via the firmwareRestore and firmwareServerip parameters.
0
Attacker Value
Unknown
CVE-2023-38591
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear DG834Gv5 1.6.01.34 was discovered to contain multiple buffer overflows via the wla_ssid and wla_temp_ssid parameters at bsw_ssid.cgi.
0
Attacker Value
Unknown
CVE-2023-38412
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear R6900P v1.3.3.154 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters at ia_ap_setting.cgi.
0
Attacker Value
Unknown
CVE-2023-36499
Disclosure Date: August 07, 2023 (last updated October 08, 2023)
Netgear XR300 v1.0.3.78 was discovered to contain multiple buffer overflows via the wla_ssid and wlg_ssid parameters at genie_ap_wifi_change.cgi.
0
Attacker Value
Unknown
CVE-2023-34563
Disclosure Date: June 20, 2023 (last updated October 08, 2023)
netgear R6250 Firmware Version 1.0.4.48 is vulnerable to Buffer Overflow after authentication.
0
Attacker Value
Unknown
CVE-2023-33533
Disclosure Date: June 06, 2023 (last updated February 25, 2025)
Netgear D6220 with Firmware Version 1.0.0.80, D8500 with Firmware Version 1.0.3.60, R6700 with Firmware Version 1.0.2.26, and R6900 with Firmware Version 1.0.2.26 are vulnerable to Command Injection. If an attacker gains web management privileges, they can inject commands into the post request parameters, gaining shell privileges.
0
Attacker Value
Unknown
CVE-2023-33532
Disclosure Date: June 06, 2023 (last updated February 25, 2025)
There is a command injection vulnerability in the Netgear R6250 router with Firmware Version 1.0.4.48. If an attacker gains web management privileges, they can inject commands into the post request parameters, thereby gaining shell privileges.
0
Attacker Value
Unknown
CVE-2023-2396
Disclosure Date: April 28, 2023 (last updated February 24, 2025)
A vulnerability classified as problematic was found in Netgear SRX5308 up to 4.3.5-3. This vulnerability affects unknown code of the component Web Management Interface. The manipulation of the argument USERDBUsers.Password leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-227674 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.
0