Netgear R7000 vulnerabilities

3 known vulnerabilities affecting netgear/r7000.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2024-1430MEDIUMCVSS 5.3v1.0.11.136_10.2.1202024-02-11
CVE-2024-1430 [MEDIUM] CWE-200 CVE-2024-1430: A vulnerability has been found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. A A vulnerability has been found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /currentsetting.htm of the component Web Management Interface. The manipulation leads to information disclosure. The exploit has been disclosed to the public and may be used. NOTE: Th
cvelistv5nvd
CVE-2024-1431MEDIUMCVSS 6.5v1.0.11.136_10.2.1202024-02-11
CVE-2024-1431 [MEDIUM] CWE-200 CVE-2024-1431: A vulnerability was found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. Affect A vulnerability was found in Netgear R7000 1.0.11.136_10.2.120 and classified as problematic. Affected by this issue is some unknown functionality of the file /debuginfo.htm of the component Web Management Interface. The manipulation leads to information disclosure. The exploit has been disclosed to the public and may be used. VDB-253382 is the identi
cvelistv5nvd
CVE-2021-34977HIGHCVSS 8.8v1.0.11.116_10.2.1002022-01-13
CVE-2021-34977 [HIGH] CWE-288 CVE-2021-34977: This vulnerability allows network-adjacent attackers to bypass authentication on affected installati This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7000 1.0.11.116_10.2.100 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of SOAP requests. The issue results from the lack of proper authentication verification before
cvelistv5nvd