cbcvebase.

Netgear Rax30 Firmware vulnerabilities

31 known vulnerabilities affecting netgear/rax30_firmware.

Total CVEs
31
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH21MEDIUM6

Vulnerabilities

Page 2 of 2
CVE-2022-47209P3HIGHCVSS 8.8fixed in 1.0.9.902022-12-16
CVE-2022-47209 [HIGH] CWE-287 CVE-2022-47209: A support user exists on the device and appears to be a backdoor for Technical Support staff. The de A support user exists on the device and appears to be a backdoor for Technical Support staff. The default password for this account is “support” and cannot be changed by a user via any normally accessible means.
nvd
CVE-2025-12943P3HIGHCVSS 7.5fixed in 1.0.14.1082025-11-11
CVE-2025-12943 [HIGH] CWE-295 CVE-2025-12943: Improper certificate validation in firmware update logic in NETGEAR RAX30 (Nighthawk AX5 5-Stream AX Improper certificate validation in firmware update logic in NETGEAR RAX30 (Nighthawk AX5 5-Stream AX2400 WiFi 6 Router) and RAXE300 (Nighthawk AXE7800 Tri-Band WiFi 6E Router) allows attackers with the ability to intercept and tamper traffic destined to the device to execute arbitrary commands on the device. Devices with automatic updates enabled may
nvd
CVE-2023-40478P3MEDIUMCVSS 6.8fixed in 1.0.10.942024-05-03
CVE-2023-40478 [MEDIUM] CWE-121 CVE-2023-40478: NETGEAR RAX30 Telnet CLI passwd Stack-based Buffer Overflow Remote Code Execution Vulnerability. Thi NETGEAR RAX30 Telnet CLI passwd Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
nvd
CVE-2022-47210P3HIGHCVSS 7.8fixed in 1.0.9.902022-12-16
CVE-2022-47210 [HIGH] CWE-78 CVE-2022-47210: The default console presented to users over telnet (when enabled) is restricted to a subset of comma The default console presented to users over telnet (when enabled) is restricted to a subset of commands. Commands issued at this console, however, appear to be fed directly into a system call or other similar function. This allows any authenticated user to execute arbitrary commands on the device.
nvd
CVE-2025-44652P3HIGHCVSS 7.5v1.0.10.94_32025-07-21
CVE-2025-44652 [HIGH] CWE-770 CVE-2025-44652: In Netgear RAX30 V1.0.10.94_3, the USERLIMIT_GLOBAL option is set to 0 in multiple bftpd-related con In Netgear RAX30 V1.0.10.94_3, the USERLIMIT_GLOBAL option is set to 0 in multiple bftpd-related configuration files. This can cause DoS attacks when unlimited users are connected.
nvd
CVE-2023-34284P3MEDIUMCVSS 6.3fixed in 1.0.10.942024-05-03
CVE-2023-34284 [MEDIUM] CWE-798 CVE-2023-34284: NETGEAR RAX30 Use of Hard-coded Credentials Authentication Bypass Vulnerability. This vulnerability NETGEAR RAX30 Use of Hard-coded Credentials Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the system configuration. The system contains
nvd
CVE-2023-27357P3MEDIUMCVSS 6.5fixed in 1.0.10.942024-05-03
CVE-2023-27357 [MEDIUM] CWE-306 CVE-2023-27357: NETGEAR RAX30 GetInfo Missing Authentication Information Disclosure Vulnerability. This vulnerabilit NETGEAR RAX30 GetInfo Missing Authentication Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of SOAP requests. The
nvd
CVE-2023-1205P4HIGHCVSS 8.8fixed in 1.0.10.942023-03-10
CVE-2023-1205 [HIGH] CWE-352 CVE-2023-1205: NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 is vulnerable to cross-site request forgery attac NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 is vulnerable to cross-site request forgery attacks on all endpoints due to improperly implemented CSRF protections.
nvd
CVE-2023-27370P4MEDIUMCVSS 5.7fixed in 1.0.10.942024-05-03
CVE-2023-27370 [MEDIUM] CWE-312 CVE-2023-27370: NETGEAR RAX30 Device Configuration Cleartext Storage Information Disclosure Vulnerability. This vuln NETGEAR RAX30 Device Configuration Cleartext Storage Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
nvd
CVE-2023-27850P4MEDIUMCVSS 6.8fixed in 1.0.10.942023-03-10
CVE-2023-27850 [MEDIUM] CWE-59 CVE-2023-27850: NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 contains a file sharing mechanism that allows use NETGEAR Nighthawk WiFi6 Router prior to V1.0.10.94 contains a file sharing mechanism that allows users with access to this feature to access arbitrary files on the device.
nvd
CVE-2023-34283P4MEDIUMCVSS 4.6fixed in 1.0.10.942024-05-03
CVE-2023-34283 [MEDIUM] CWE-59 CVE-2023-34283: NETGEAR RAX30 USB Share Link Following Information Disclosure Vulnerability. This vulnerability allo NETGEAR RAX30 USB Share Link Following Information Disclosure Vulnerability. This vulnerability allows physically present attackers to disclose sensitive information on affected installations of NETGEAR RAX30 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of symbolic links on remov
nvd