cbcvebase.

Netgear Rbr840 Firmware vulnerabilities

27 known vulnerabilities affecting netgear/rbr840_firmware.

Total CVEs
27
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH19MEDIUM5

Vulnerabilities

Page 2 of 2
CVE-2020-14432P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14432 [HIGH] CWE-352 CVE-2020-14432: Certain NETGEAR devices are affected by CSRF. This affects RBK752 before 3.2.15.25, RBK753 before 3. Certain NETGEAR devices are affected by CSRF. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3.2.15.25, and RBS850 before
nvd
CVE-2020-35802P3HIGHCVSS 7.5fixed in 3.2.16.62020-12-30
CVE-2020-35802 [HIGH] CVE-2020-35802: Certain NETGEAR devices are affected by disclosure of sensitive information. This affects CBR40 befo Certain NETGEAR devices are affected by disclosure of sensitive information. This affects CBR40 before 2.5.0.14, RBW30 before 2.6.1.4, RAX75 before 1.0.3.102, RAX80 before 1.0.3.102, RBK752 before 3.2.16.6, RBR750 before 3.2.16.6, RBS750 before 3.2.16.6, RBK852 before 3.2.16.6, RBR850 before 3.2.16.6, RBS850 before 3.2.16.6, RBK842 before 3.2.16.6, RBR840 bef
nvd
CVE-2020-14434P4MEDIUMCVSS 6.8fixed in 3.2.15.252020-06-18
CVE-2020-14434 [MEDIUM] CWE-77 CVE-2020-14434: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3.2.15.25, RBS850 before 3.2.15.25, RBK842 before 3.2.15.25, RBR8
nvd
CVE-2020-14433P4MEDIUMCVSS 6.8fixed in 3.2.15.252020-06-18
CVE-2020-14433 [MEDIUM] CWE-77 CVE-2020-14433: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBK842 before 3.2.15.25, RBR850 before 3.2.15.25, RBS850 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR7
nvd
CVE-2026-0418P4MEDIUMCVSS 4.5fixed in 4.6.14.32026-06-09
CVE-2026-0418 [MEDIUM] CWE-15 CVE-2026-0418: Insufficient configuration management in the listed devices allows authenticated administrators conn Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network to tamper with the system.
nvd
CVE-2026-0413P4MEDIUMCVSS 4.5fixed in 7.2.8.52026-06-09
CVE-2026-0413 [MEDIUM] CWE-121 CVE-2026-0413: A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models al A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
CVE-2026-0415P4MEDIUMCVSS 4.5fixed in 7.2.8.52026-06-09
CVE-2026-0415 [MEDIUM] CWE-20 CVE-2026-0415: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
Netgear Rbr840 Firmware vulnerabilities | cvebase