Netgear M4300-12X12F Firmware vulnerabilities

21 known vulnerabilities affecting netgear/m4300-12x12f_firmware.

Total CVEs
21
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH6MEDIUM13LOW1

Vulnerabilities

Page 1 of 2
CVE-2017-18858CRITICALCVSS 9.8≤ 12.0.2.112020-04-28
CVE-2017-18858 [CRITICAL] CWE-78 CVE-2017-18858: Certain NETGEAR devices are affected by command execution. This affects M4200-10MG-POE+ 12.0.2.11 an Certain NETGEAR devices are affected by command execution. This affects M4200-10MG-POE+ 12.0.2.11 and earlier, M4300-28G 12.0.2.11 and earlier, M4300-52G 12.0.2.11 and earlier, M4300-28G-POE+ 12.0.2.11 and earlier, M4300-52G-POE+ 12.0.2.11 and earlier, M4300-8X8F 12.0.2.11 and earlier, M4300-12X12F 12.0.2.11 and earlier, M4300-24X24F 12.0.2.11 and
nvd
CVE-2017-18821MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-21
CVE-2017-18821 [MEDIUM] CWE-79 CVE-2017-18821: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18822HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18822 [HIGH] CWE-269 CVE-2017-18822: Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15,
nvd
CVE-2017-18826HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18826 [HIGH] CWE-269 CVE-2017-18826: Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15,
nvd
CVE-2017-18830HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18830 [HIGH] CWE-269 CVE-2017-18830: Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15,
nvd
CVE-2017-18838HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18838 [HIGH] CWE-269 CVE-2017-18838: Certain NETGEAR devices are affected by privilege escalation. This affects M4300-28G before 12.0.2.1 Certain NETGEAR devices are affected by privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200
nvd
CVE-2017-18837HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18837 [HIGH] CWE-269 CVE-2017-18837: Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15,
nvd
CVE-2017-18829HIGHCVSS 7.8fixed in 12.0.2.152020-04-20
CVE-2017-18829 [HIGH] CWE-269 CVE-2017-18829: Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before Certain NETGEAR devices are affected by vertical privilege escalation. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15,
nvd
CVE-2017-18835MEDIUMCVSS 6.1fixed in 12.0.2.152020-04-20
CVE-2017-18835 [MEDIUM] CWE-79 CVE-2017-18835: Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M430 Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 befor
nvd
CVE-2017-18839MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18839 [MEDIUM] CWE-79 CVE-2017-18839: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18832MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18832 [MEDIUM] CWE-79 CVE-2017-18832: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18836MEDIUMCVSS 6.2fixed in 12.0.2.152020-04-20
CVE-2017-18836 [MEDIUM] CVE-2017-18836: Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 12
nvd
CVE-2017-18823MEDIUMCVSS 5.5fixed in 12.0.2.152020-04-20
CVE-2017-18823 [MEDIUM] CVE-2017-18823: Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects M Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12
nvd
CVE-2017-18828MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18828 [MEDIUM] CWE-79 CVE-2017-18828: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18827MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18827 [MEDIUM] CWE-79 CVE-2017-18827: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18831MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18831 [MEDIUM] CWE-79 CVE-2017-18831: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18833MEDIUMCVSS 6.1fixed in 12.0.2.152020-04-20
CVE-2017-18833 [MEDIUM] CWE-79 CVE-2017-18833: Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M430 Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 befor
nvd
CVE-2017-18840MEDIUMCVSS 6.2fixed in 12.0.2.152020-04-20
CVE-2017-18840 [MEDIUM] CWE-20 CVE-2017-18840: Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, Certain NETGEAR devices are affected by denial of service. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 be
nvd
CVE-2017-18825MEDIUMCVSS 4.8fixed in 12.0.2.152020-04-20
CVE-2017-18825 [MEDIUM] CWE-79 CVE-2017-18825: Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-5 Certain NETGEAR devices are affected by stored XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 before 1
nvd
CVE-2017-18834MEDIUMCVSS 6.1fixed in 12.0.2.152020-04-20
CVE-2017-18834 [MEDIUM] CWE-79 CVE-2017-18834: Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M430 Certain NETGEAR devices are affected by reflected XSS. This affects M4300-28G before 12.0.2.15, M4300-52G before 12.0.2.15, M4300-28G-POE+ before 12.0.2.15, M4300-52G-POE+ before 12.0.2.15, M4300-8X8F before 12.0.2.15, M4300-12X12F before 12.0.2.15, M4300-24X24F before 12.0.2.15, M4300-24X before 12.0.2.15, M4300-48X before 12.0.2.15, and M4200 befor
nvd