Netgear Jr6150 Firmware vulnerabilities
62 known vulnerabilities affecting netgear/jr6150_firmware.
Total CVEs
62
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH43MEDIUM14LOW1
Vulnerabilities
Page 3 of 4
CVE-2017-18780MEDIUMCVSS 5.5fixed in 1.0.1.122020-04-22
CVE-2017-18780 [MEDIUM] CVE-2017-18780: Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.24, D700
Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.1
nvd
CVE-2017-18783MEDIUMCVSS 6.1fixed in 1.0.1.122020-04-22
CVE-2017-18783 [MEDIUM] CWE-79 CVE-2017-18783: Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1
Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44, JR6150 before 1.0.1.12, JWNR2010v5 before 1.1.0.44, PR2000 before 1.0.0.20, R6020 before 1.0.0.26, R6050 before 1.0.1.12, R6080 before 1.0.0.26, R6120 before 1.0.0.36, R6220 before 1.1.0.60, R6700v2 before 1.2.0.12, R680
nvd
CVE-2017-18763MEDIUMCVSS 6.5fixed in 1.0.1.102020-04-22
CVE-2017-18763 [MEDIUM] CWE-20 CVE-2017-18763: Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects J
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects JNR1010v2 before 1.1.0.42, JR6150 before 1.0.1.10, JWNR2010v5 before 1.1.0.42, PR2000 before 1.0.0.18, R6050 before 1.0.1.10, R6120 before 1.0.0.30, R6220 before 1.1.0.50, R6700v2 before 1.2.0.4, R6800 before 1.2.0.4, R6900v2 before 1.2.0.4, WNDR3700v5
nvd
CVE-2017-18791HIGHCVSS 8.8fixed in 1.0.1.72020-04-21
CVE-2017-18791 [HIGH] CWE-352 CVE-2017-18791: Certain NETGEAR devices are affected by CSRF. This affects R6050/JR6150 before 1.0.1.7, PR2000 befor
Certain NETGEAR devices are affected by CSRF. This affects R6050/JR6150 before 1.0.1.7, PR2000 before 1.0.0.17, R6220 before 1.1.0.50, WNDR3700v5 before 1.1.0.48, JNR1010v2 before 1.1.0.40, JWNR2010v5 before 1.1.0.40, WNR1000v4 before 1.1.0.40, WNR2020 before 1.1.0.40, WNR2050 before 1.1.0.40, WNR614 before 1.1.0.40, WNR618 before 1.1.0.40, and D7000
nvd
CVE-2019-20730CRITICALCVSS 9.8fixed in 1.0.1.182020-04-16
CVE-2019-20730 [CRITICAL] CWE-89 CVE-2019-20730: Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 bef
Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0.74, D7000 before 1.0.1.60, D7000v2 before 1.0.0.74, D7800 before 1.0.1.34, D8500 before 1.0.3.39, DC112A before 1.0.0.40, EX8000 before 1.0.0.118, JR6150 before 1.0.1.18,
nvd
CVE-2019-20682HIGHCVSS 8.8fixed in 1.0.1.182020-04-16
CVE-2019-20682 [HIGH] CWE-787 CVE-2019-20682: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220
nvd
CVE-2019-20683HIGHCVSS 8.8fixed in 1.0.1.182020-04-16
CVE-2019-20683 [HIGH] CWE-787 CVE-2019-20683: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220
nvd
CVE-2019-20685HIGHCVSS 8.8fixed in 1.0.1.182020-04-16
CVE-2019-20685 [HIGH] CWE-787 CVE-2019-20685: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6200 before 1.1.00.32, D7000 before 1.0.1.68, DM200 before 1.0.0.58, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120
nvd
CVE-2019-20687HIGHCVSS 7.5fixed in 1.0.1.182020-04-16
CVE-2019-20687 [HIGH] CVE-2019-20687: Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.34, D700
Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.70, JR6150 before 1.0.1.18, R6050 before 1.0.1.18, and WNR2020 before 1.1.0.62.
nvd
CVE-2019-20686HIGHCVSS 8.8fixed in 1.0.1.182020-04-16
CVE-2019-20686 [HIGH] CWE-120 CVE-2019-20686: Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affec
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.40, R6080 before 1.0.0.40, R6050 before 1.0.1.18, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.
nvd
CVE-2019-20684HIGHCVSS 8.8fixed in 1.0.1.182020-04-16
CVE-2019-20684 [HIGH] CWE-787 CVE-2019-20684: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220
nvd
CVE-2019-20656HIGHCVSS 8.8fixed in 1.0.1.242020-04-15
CVE-2019-20656 [HIGH] CWE-798 CVE-2019-20656: Certain NETGEAR devices are affected by a hardcoded password. This affects D6200 before 1.1.00.36, D
Certain NETGEAR devices are affected by a hardcoded password. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.30, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.6
nvd
CVE-2020-11788HIGHCVSS 8.8fixed in 1.0.1.182020-04-15
CVE-2020-11788 [HIGH] CVE-2020-11788: Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34,
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, JR6150 before 1.0.1.18, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6230 before 1.1.0.80, R6260 before 1.1.0.64, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, and R6900v2 before 1.2.0.36.
nvd
CVE-2019-20681HIGHCVSS 8.8fixed in 1.0.1.182020-04-15
CVE-2019-20681 [HIGH] CVE-2019-20681: Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34,
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, R6120 before 1.0.0.46, R6220 before 1.1.0.80, R6260 before 1.1.0.64, R6700v2 before 1.2.0.36, R6800 before 1.2.0.36, and R6900v2 before 1.2.0.36.
nvd
CVE-2019-20640HIGHCVSS 8.8fixed in 1.0.1.182020-04-15
CVE-2019-20640 [HIGH] CWE-787 CVE-2019-20640: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.32, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.38, R6050 before 1.0.1.18, R6080 before 1.0.0.38, R6120 before 1.0.0.46, R6220
nvd
CVE-2019-20657HIGHCVSS 8.0fixed in 1.0.1.242020-04-15
CVE-2019-20657 [HIGH] CWE-120 CVE-2019-20657: Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D62
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64,
nvd
CVE-2015-6312HIGHCVSS 7.5fixed in 2017-01-062016-04-06
CVE-2015-6312 [HIGH] CWE-119 CVE-2015-6312: Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and
Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and 320, and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (device reload) via malformed STUN packets, aka Bug ID CSCuv01348.
nvd
CVE-2016-1346MEDIUMCVSS 5.9fixed in 2017-01-062016-04-06
CVE-2016-1346 [MEDIUM] CWE-399 CVE-2016-1346: The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710
The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710 devices allows remote attackers to cause a denial of service (panic and reboot) via a crafted sequence of IPv6 packets, aka Bug ID CSCuu46673.
nvd
CVE-2016-1349HIGHCVSS 7.5fixed in 2017-01-062016-03-26
CVE-2016-1349 [HIGH] CWE-399 CVE-2016-1349: The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7
The Smart Install client implementation in Cisco IOS 12.2, 15.0, and 15.2 and IOS XE 3.2 through 3.7 allows remote attackers to cause a denial of service (device reload) via crafted image list parameters in a Smart Install packet, aka Bug ID CSCuv45410.
nvd
CVE-2016-1348HIGHCVSS 7.5fixed in 2017-01-062016-03-26
CVE-2016-1348 [HIGH] CWE-399 CVE-2016-1348: Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of
Cisco IOS 15.0 through 15.5 and IOS XE 3.3 through 3.16 allow remote attackers to cause a denial of service (device reload) via a crafted DHCPv6 Relay message, aka Bug ID CSCus55821.
nvd