cbcvebase.

Netgear Rbs50Y Firmware vulnerabilities

27 known vulnerabilities affecting netgear/rbs50y_firmware.

Total CVEs
27
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL7HIGH17MEDIUM3

Vulnerabilities

Page 2 of 2
CVE-2021-45661P3HIGHCVSS 7.8fixed in 2.6.1.402021-12-26
CVE-2021-45661 [HIGH] CWE-74 CVE-2021-45661: Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16, R Certain NETGEAR devices are affected by server-side injection. This affects RBK40 before 2.5.1.16, RBR40 before 2.5.1.16, RBS40 before 2.5.1.16, RBK20 before 2.5.1.16, RBR20 before 2.5.1.16, RBS20 before 2.5.1.16, RBK50 before 2.5.1.16, RBR50 before 2.5.1.16, RBS50 before 2.5.1.16, and RBS50Y before 2.6.1.40.
nvd
CVE-2021-45657P3HIGHCVSS 7.8fixed in 2.6.1.402021-12-26
CVE-2021-45657 [HIGH] CWE-74 CVE-2021-45657: Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, R6220 before 1.1.0.100, R6230 before 1.1.0.100, R6260 before 1.1.0.78, R6800 before 1.2.0.76, R6900v2 before 1.2.0.7
nvd
CVE-2021-45656P3HIGHCVSS 7.8fixed in 2.6.1.402021-12-26
CVE-2021-45656 [HIGH] CWE-74 CVE-2021-45656: Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 before 1.0.0.48, R6080 before 1.0.0.48, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, R6220 before 1.1.0.100, R6230 before 1.1.0.100, R6260 before 1.1.0.78, R6800 before 1.2.0.76, R6900v2 before 1.2.0.7
nvd
CVE-2021-45642P3HIGHCVSS 7.2fixed in 2.7.3.222021-12-26
CVE-2021-45642 [HIGH] CVE-2021-45642: Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.64, EX6250 before 1.0.0.134, EX7700 before 1.0.0.222, LBR20 before 2.6.3.50, RBS50Y before 2.7.3.22, R8900 before 1.0.5.26, R9000 before 1.0.5.26, XR450 before 2.3.2.66, XR500 before 2.3.2.66, XR700 before 1.0.1.36, EX7320 before 1.0.0.134, RA
nvd
CVE-2021-27257P3MEDIUMCVSS 6.5fixed in 2.6.2.1042021-03-05
CVE-2021-27257 [MEDIUM] CWE-295 CVE-2021-27257: This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded infor This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit this vulnerability. The specific flaw exists within the downloading of files via FTP. The issue results from the lack of proper vali
nvd
CVE-2020-11550P3MEDIUMCVSS 6.5v2.5.1.1062020-05-18
CVE-2020-11550 [MEDIUM] CVE-2020-11550: An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5. An issue was discovered on NETGEAR Orbi Tri-Band Business WiFi Add-on Satellite (SRS60) AC3000 V2.5.1.106, Outdoor Satellite (RBS50Y) V2.5.1.106, and Pro Tri-Band Business WiFi Router (SRR60) AC3000 V2.5.1.106. The administrative SOAP interface allows an unauthenticated remote leak of sensitive/arbitrary Wi-Fi information, such as SSIDs and Pre-Shared-Keys
nvd
CVE-2021-45594P4MEDIUMCVSS 6.8fixed in 2.7.3.222021-12-26
CVE-2021-45594 [MEDIUM] CWE-77 CVE-2021-45594: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBS Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBS50Y before 2.7.3.22, RBR20 before 2.7.3.22, RBR40 before 2.7.3.22, RBR50 before 2.7.3.22, RBS20 before 2.7.3.22, RBS40 before 2.7.3.22, RBS50 before 2.7.3.22, RBK20 before 2.7.3.22, RBK40 before 2.7.3.22, and RBK50 before 2.7.3.22.
nvd