Skip to main content

Vendor/product archive

netgear / r8500 CVEs

Beta · best-effort

69 CVEs tagged to netgear / r85004 Critical, 30 High, 35 Medium, 0 Low, 0 Unrated.

CVE-2024-52021

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at bsw_fix.cgi. This vulnerability allows attackers to execute ar…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-52020

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at wiz_fix2.cgi. This vulnerability allows attackers to execute a…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-52019

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at genie_fix2.cgi. This vulnerability allows attackers to execute…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-51012

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the ipv6_pri_dns parameter at ipv6_fix.cgi. This vulnerability allows attackers to cause a Denial of Servic…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-51009

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the wan_gateway parameter at ether.cgi. This vulnerability allows attackers to execute arbi…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-51006

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the ipv6_static_ip parameter in the ipv6_tunnel function. This vulnerability allows attackers to cause a De…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-51005

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the share_name parameter at usb_remote_smb_conf.cgi. This vulnerability allows attackers to…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort

CVE-2024-51001

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the sysDNSHost parameter at ddns.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-51000

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component wireless.cgi via the opmode, opmode_an, and opmode_an_2 parameters. The…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-50999

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at password.cgi. This vulnerability allows attackers to execute…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-50998

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component openvpn.cgi via the openvpn_service_port and openvpn_service_port_tun p…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-50995

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the share_name parameter at usb_remote_smb_conf.cgi. This vulnerability allows attackers to cause a Denial…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-50994

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain multiple stack overflow vulnerabilities in the component ipv6_fix.cgi via the ipv6_wan_ipaddr, ipv6_lan_ipaddr, ipv6_wan_length,…

CVSS 5.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-50993

Published Nov 5, 2024

Netgear R8500 v1.0.2.160 was discovered to contain a command injection vulnerability in the sysNewPasswd parameter at admin_account.cgi. This vulnerability allows attackers to exe…

CVSS 8.0 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 69 CVEsPage 1 of 3