Netgear Ex6120 vulnerabilities
4 known vulnerabilities affecting netgear/ex6120.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2025-4140P2CRITICALCVSS 9.8v1.0.3.942025-04-30
CVE-2025-4140 [CRITICAL] CWE-119 CVE-2025-4140: A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affect
A vulnerability, which was classified as critical, has been found in Netgear EX6120 1.0.3.94. Affected by this issue is the function sub_30394. The manipulation of the argument host leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
nvd
CVE-2025-4139P2HIGHCVSS 8.8v1.0.0.682025-04-30
CVE-2025-4139 [HIGH] CWE-119 CVE-2025-4139: A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulner
A vulnerability classified as critical was found in Netgear EX6120 1.0.0.68. Affected by this vulnerability is the function fwAcosCgiInbound. The manipulation of the argument host leads to buffer overflow. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
nvd
CVE-2026-0418P4MEDIUMCVSS 4.5≤ 1.0.0.722026-06-09
CVE-2026-0418 [MEDIUM] CWE-15 CVE-2026-0418: Insufficient configuration management in the listed devices allows authenticated administrators conn
Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network
to tamper with the system.
nvd
CVE-2026-9210P4MEDIUMCVSS 4.5fixed in V1.0.0.722026-06-09
CVE-2026-9210 [MEDIUM] CWE-20 CVE-2026-9210: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd