Netgear Rbs850 Firmware vulnerabilities
149 known vulnerabilities affecting netgear/rbs850_firmware.
Total CVEs
149
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL29HIGH60MEDIUM60
Vulnerabilities
Page 4 of 8
CVE-2021-29071P3CRITICALCVSS 9.0fixed in 3.2.17.122021-03-23
CVE-2021-29071 [CRITICAL] CWE-77 CVE-2021-29071: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK852 before 3.2.17.12, RBK853 before 3.2.17.12, RBK854 before 3.2.17.12, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, RBR752 before 3.2.17.12, RBR753 before 3.2.17.12, RBR753S before 3.2.17.12, RBR754 before 3.2.17.12, RBR750 before 3.2.17.12, an
nvd
CVE-2026-0405P3HIGHCVSS 7.8fixed in 7.2.8.22026-01-13
CVE-2026-0405 [HIGH] CWE-287 CVE-2026-0405: An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local
An authentication bypass vulnerability in NETGEAR Orbi devices allows
users connected to the local network to access the router web interface
as an admin.
nvd
CVE-2020-26905P3HIGHCVSS 8.8fixed in 3.2.10.112020-10-09
CVE-2020-26905 [HIGH] CVE-2020-26905: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.
nvd
CVE-2020-26904P3HIGHCVSS 8.8fixed in 3.2.10.112020-10-09
CVE-2020-26904 [HIGH] CVE-2020-26904: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.
nvd
CVE-2020-26897P3HIGHCVSS 8.8fixed in 3.2.10.112020-10-09
CVE-2020-26897 [HIGH] CVE-2020-26897: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.
nvd
CVE-2020-26906P3HIGHCVSS 8.8fixed in 3.2.10.112020-10-09
CVE-2020-26906 [HIGH] CVE-2020-26906: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.
nvd
CVE-2026-0403P3HIGHCVSS 8.0fixed in 7.2.8.52026-01-13
CVE-2026-0403 [HIGH] CWE-20 CVE-2026-0403: An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected t
An insufficient input validation vulnerability in NETGEAR Orbi routers
allows attackers connected to the router's LAN to execute OS command
injections.
nvd
CVE-2021-29068P3HIGHCVSS 8.8fixed in 3.2.16.62021-03-23
CVE-2021-29068 [HIGH] CWE-120 CVE-2021-29068: Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R67
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects R6700v3 before 1.0.4.98, R6400v2 before 1.0.4.98, R7000 before 1.0.11.106, R6900P before 1.3.2.124, R7000P before 1.3.2.124, R7900 before 1.0.4.26, R7850 before 1.0.5.60, R8000 before 1.0.4.58, RS400 before 1.5.0.48, R6400 before 1.0.1.62, R6700 before 1.0
nvd
CVE-2020-26903P3HIGHCVSS 8.8fixed in 3.2.10.112020-10-09
CVE-2020-26903 [HIGH] CVE-2020-26903: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 before 3.2.10.11.
nvd
CVE-2020-14426P3HIGHCVSS 8.8fixed in 3.2.10.112020-06-18
CVE-2020-14426 [HIGH] CVE-2020-14426: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK75
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBK853 before 3.2.10.11, RBR850 before 3.2.10.11, RBS850 before 3.2.10.11, RBK842 before 3.2.10.11, RBR840 before 3
nvd
CVE-2020-14429P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14429 [HIGH] CVE-2020-14429: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects MK62
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects MK62 before 1.0.4.92, MK63 before 1.0.4.92, MR60 before 1.0.4.92, MS60 before 1.0.4.92, RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBS750 before 3.2.15.25, RBR750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS
nvd
CVE-2020-14431P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14431 [HIGH] CVE-2020-14431: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK75
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3
nvd
CVE-2020-14428P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14428 [HIGH] CVE-2020-14428: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK75
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3
nvd
CVE-2020-26900P3HIGHCVSS 8.8fixed in 3.2.15.252020-10-09
CVE-2020-26900 [HIGH] CVE-2020-26900: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.15.25, RBR850 before 3.2.15.25, and RBS850 before 3.2.15.25.
nvd
CVE-2020-35798P3HIGHCVSS 7.8fixed in 3.2.15.252020-12-30
CVE-2020-35798 [HIGH] CWE-77 CVE-2020-35798: Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affec
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.0.4.84, R6700v3 before 1.0.4.84, R6900P before 1.3.2.124, R7000 before 1.0.11.100, R7000P before 1.3.2.124, R7800 before 1.0.2.74, R7850 before 1.0.5.60, R7900 before 1.0.4.26, R7960P before 1.4.1.50, R8000 before 1.0.4.52, R7900P bef
nvd
CVE-2020-14427P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14427 [HIGH] CVE-2020-14427: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK75
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3
nvd
CVE-2020-14430P3HIGHCVSS 8.8fixed in 3.2.15.252020-06-18
CVE-2020-14430 [HIGH] CVE-2020-14430: Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK75
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK842 before 3.2.15.25, RBR840 before 3.2.15.25, RBS840 before 3.2.15.25, RBK852 before 3.2.15.25, RBK853 before 3.2.15.25, RBR850 before 3
nvd
CVE-2021-29081P3HIGHCVSS 8.4fixed in 3.2.17.122021-03-23
CVE-2021-29081 [HIGH] CWE-787 CVE-2021-29081: Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects RBW30 before 2.6.2.2, RBK852 before 3.2.17.12, RBK853 before 3.2.17.12, RBK854 before 3.2.17.12, RBR850 before 3.2.17.12, RBS850 before 3.2.17.12, RBK752 before 3.2.17.12, RBK753 before 3.2.17.12, RBK753S before 3.2.17.12, RBK754 before 3
nvd
CVE-2021-29080P3HIGHCVSS 8.1fixed in 3.2.10.112021-03-23
CVE-2021-29080 [HIGH] CWE-640 CVE-2021-29080: Certain NETGEAR devices are affected by password reset by an unauthenticated attacker. This affects
Certain NETGEAR devices are affected by password reset by an unauthenticated attacker. This affects RBK852 before 3.2.10.11, RBK853 before 3.2.10.11, RBR854 before 3.2.10.11, RBR850 before 3.2.10.11, RBS850 before 3.2.10.11, CBR40 before 2.5.0.10, R7000 before 1.0.11.116, R6900P before 1.3.2.126, R7900 before 1.0.4.38, R7960P before 1.4.1.66, R8000 bef
nvd
CVE-2021-45600P3HIGHCVSS 7.2fixed in 3.2.17.122021-12-26
CVE-2021-45600 [HIGH] CWE-77 CVE-2021-45600: Certain NETGEAR devices are affected by command injection by an authenticated user. This affects CBR
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects CBR750 before 4.6.3.6, RBK852 before 3.2.17.12, RBR850 before 3.2.17.12, and RBS850 before 3.2.17.12.
nvd