Netgear R6700 Firmware vulnerabilities

172 known vulnerabilities affecting netgear/r6700_firmware.

Total CVEs
172
CISA KEV
1
actively exploited
Public exploits
4
Exploited in wild
1
Severity breakdown
CRITICAL11HIGH104MEDIUM56LOW1

Vulnerabilities

Page 3 of 9
CVE-2020-27867MEDIUMCVSS 6.8fixed in 1.2.0.762021-02-12
CVE-2020-27867 [MEDIUM] CWE-77 CVE-2020-27867: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanis
nvd
CVE-2020-27872HIGHCVSS 8.8fixed in 1.2.0.762021-02-04
CVE-2020-27872 [HIGH] CWE-642 CVE-2020-27872: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the mini_httpd service, which listens on TCP port 80 by default. The issue results from improper state tracking in
nvd
CVE-2020-27873MEDIUMCVSS 6.5fixed in 1.2.0.762021-02-04
CVE-2020-27873 [MEDIUM] CWE-284 CVE-2020-27873: This vulnerability allows network-adjacent attackers to disclose sensitive information on affected i This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R7450 1.2.0.62_1.0.1 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SOAP API endpoint, which listens on TCP port 80 by default. The issue results from the lack of prop
nvd
CVE-2020-35796CRITICALCVSS 9.8fixed in 1.0.2.162020-12-30
CVE-2020-35796 [CRITICAL] CWE-120 CVE-2020-35796: Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affec Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects CBR40 before 2.5.0.10, D6220 before 1.0.0.60, D6400 before 1.0.0.94, D7000v2 before 1.0.0.62, D8500 before 1.0.3.50, DC112A before 1.0.0.48, DGN2200v4 before 1.0.0.114, EAX20 before 1.0.0.36, EAX80 before 1.0.1.62, EX3700 before 1.0.0.84, EX3800
nvd
CVE-2020-35795CRITICALCVSS 9.8fixed in 1.0.2.162020-12-30
CVE-2020-35795 [CRITICAL] CWE-120 CVE-2020-35795: Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affec Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects AC2100 before 1.2.0.72, AC2400 before 1.2.0.72, AC2600 before 1.2.0.72, CBK40 before 2.5.0.10, CBR40 before 2.5.0.10, D7800 before 1.0.1.58, EAX20 before 1.0.0.36, EAX80 before 1.0.1.62, EX7500 before 1.0.0.68, MK62 before 1.0.5.102, MR60 before
nvd
CVE-2020-35787HIGHCVSS 8.0fixed in 1.0.2.6fixed in 1.2.0.362020-12-30
CVE-2020-35787 [HIGH] CWE-120 CVE-2020-35787: Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D36 Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6200 before 1.1.00.36, D7000 before 1.0.1.70, EX6200v2 before 1.0.1.78, EX7000 before 1.0.1.78, EX8000 before 1.0.1.186, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6050 before 1.0.
nvd
CVE-2020-26927CRITICALCVSS 9.8fixed in 1.2.0.622020-10-09
CVE-2020-26927 [CRITICAL] CVE-2020-26927: Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, R6220 before 1.1.0.100, R6260 before 1.1.0.66, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62,
nvd
CVE-2020-15636CRITICALCVSS 9.8fixed in 1.0.4.982020-08-20
CVE-2020-15636 [CRITICAL] CWE-121 CVE-2020-15636: This vulnerability allows remote attackers to execute arbitrary code on affected installations of NE This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR R6400, R6700, R7000, R7850, R7900, R8000, RS400, and XR300 routers with firmware 1.0.4.84_10.0.58. Authentication is not required to exploit this vulnerability. The specific flaw exists within the check_ra service. A crafted raePolicyVersion i
nvd
CVE-2020-15635HIGHCVSS 8.8fixed in 1.0.4.982020-08-20
CVE-2020-15635 [HIGH] CWE-121 CVE-2020-15635: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers with firmware 1.0.4.84_10.0.58. Authentication is not required to exploit this vulnerability. The specific flaw exists within the acsd service, which listens on TCP port 5916 by default. The issue results
nvd
CVE-2020-15634MEDIUMCVSS 6.3fixed in 1.0.4.982020-08-20
CVE-2020-15634 [MEDIUM] CWE-134 CVE-2020-15634: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 routers with firmware 1.0.4.84_10.0.58. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of string table file uploads. The issue results from the lack of proper validation
nvd
CVE-2020-10927HIGHCVSS 8.8v1.0.4.84_10.0.582020-07-28
CVE-2020-10927 [HIGH] CWE-327 CVE-2020-10927: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the encryption of firmware update images. The issue results from the use of an inappropriate encryption algori
nvd
CVE-2020-10925HIGHCVSS 8.8v1.0.4.84_10.0.582020-07-28
CVE-2020-10925 [HIGH] CWE-295 CVE-2020-10925: This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded infor This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the downloading of files via HTTPS. The issue results from the lack of proper vali
nvd
CVE-2020-15416HIGHCVSS 8.8v1.0.4.84_10.0.582020-07-28
CVE-2020-15416 [HIGH] CWE-121 CVE-2020-15416: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the httpd service, which listens on TCP port 80 by default. The issue results from the lack of proper validatio
nvd
CVE-2020-10924HIGHCVSS 8.8PoCv1.0.4.84_10.0.582020-07-28
CVE-2020-10924 [HIGH] CWE-121 CVE-2020-10924: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the UPnP service, which listens on TCP port 5000 by
nvd
CVE-2020-10928HIGHCVSS 8.4v1.0.4.84_10.0.582020-07-28
CVE-2020-10928 [HIGH] CWE-122 CVE-2020-10928: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of string table file uploads. The issue results from the lack of proper validation of the length
nvd
CVE-2020-10929HIGHCVSS 8.8v1.0.4.84_10.0.582020-07-28
CVE-2020-10929 [HIGH] CWE-680 CVE-2020-10929: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of string table file uploads. The issue results from the lack of proper validation of user-suppli
nvd
CVE-2020-10926HIGHCVSS 8.8v1.0.4.84_10.0.582020-07-28
CVE-2020-10926 [HIGH] CWE-494 CVE-2020-10926: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of firmware updates. The issue results from the lack of proper validation of the firmware image p
nvd
CVE-2020-10923HIGHCVSS 8.8PoCv1.0.4.84_10.0.582020-07-28
CVE-2020-10923 [HIGH] CWE-305 CVE-2020-10923: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the UPnP service, which listens on TCP port 5000. A crafted UPnP message can be used to bypass authentication.
nvd
CVE-2020-15417MEDIUMCVSS 6.3v1.0.4.84_10.0.582020-07-28
CVE-2020-15417 [MEDIUM] CWE-121 CVE-2020-15417: This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installat This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of string table file uploads. A crafted gui_region in a string table file can trigger an overfl
nvd
CVE-2020-10930MEDIUMCVSS 6.5v1.0.4.84_10.0.582020-07-28
CVE-2020-10930 [MEDIUM] CWE-284 CVE-2020-10930: This vulnerability allows network-adjacent attackers to disclose sensitive information on affected i This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR R6700 V1.0.4.84_10.0.58 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of URLs. The issue results from the lack of proper routing of URLs. An attacker can lev
nvd