Netgear Dgnd3700 Firmware vulnerabilities

5 known vulnerabilities affecting netgear/dgnd3700_firmware.

Total CVEs
5
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH1MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2025-4978CRITICALCVSS 9.3v1.1.00.15_1.00.15na2025-05-20
CVE-2025-4978 [CRITICAL] CWE-287 CVE-2025-4978: A vulnerability, which was classified as very critical, was found in Netgear DGND3700 1.1.00.15_1.00 A vulnerability, which was classified as very critical, was found in Netgear DGND3700 1.1.00.15_1.00.15NA. This affects an unknown part of the file /BRS_top.html of the component Basic Authentication. The manipulation leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and ma
nvd
CVE-2025-4977MEDIUMCVSS 6.9v1.1.00.15_1.00.15na2025-05-20
CVE-2025-4977 [MEDIUM] CWE-200 CVE-2025-4977: A vulnerability, which was classified as problematic, has been found in Netgear DGND3700 1.1.00.15_1 A vulnerability, which was classified as problematic, has been found in Netgear DGND3700 1.1.00.15_1.00.15NA. Affected by this issue is some unknown functionality of the file /BRS_top.html. The manipulation leads to information disclosure. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. Other products
nvd
CVE-2025-4980MEDIUMCVSS 6.9v1.1.00.15_1.00.15na2025-05-20
CVE-2025-4980 [MEDIUM] CWE-200 CVE-2025-4980: A vulnerability has been found in Netgear DGND3700 1.1.00.15_1.00.15NA and classified as problematic A vulnerability has been found in Netgear DGND3700 1.1.00.15_1.00.15NA and classified as problematic. This vulnerability affects unknown code of the file /currentsetting.htm of the component mini_http. The manipulation leads to information disclosure. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. O
nvd
CVE-2016-11059HIGHCVSS 7.5fixed in 2017-01-062020-04-28
CVE-2016-11059 [HIGH] CWE-200 CVE-2016-11059: Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6 Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1
nvd
CVE-2016-5649CRITICALCVSS 9.8PoCv1.0.0.17_1.0.172018-07-24
CVE-2016-5649 [CRITICAL] CWE-319 CVE-2016-5649: A vulnerability is in the 'BSW_cxttongr.htm' page of the Netgear DGN2200, version DGN2200-V1.0.0.50_ A vulnerability is in the 'BSW_cxttongr.htm' page of the Netgear DGN2200, version DGN2200-V1.0.0.50_7.0.50, and DGND3700, version DGND3700-V1.0.0.17_1.0.17, which can allow a remote attacker to access this page without any authentication. When processed, it exposes the admin password in clear text before it gets redirected to absw_vfysucc.cgia. An a
nvd