Known vulnerabilities in LAX20

Vendor: NETGEAR
Software: LAX20
Software CPE: cpe:2.3:h:netgear:lax20:*:*:*:*:*:*:*:*
Total vulnerabilities: 16
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting LAX20 LAX20 is affected by 16 known vulnerabilities: 3 medium, 13 low Critical High Medium Low

Vulnerabilities (16)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU77787 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.1.6.34 29.06.2023 SB2023062916
#VU73748 - Command injection
CWE-77 Medium
No
No
1.1.6.28 16.03.2023 SB2023031619
#VU73746 - Memory corruption
CWE-119 Low
No
No
1.1.6.34 16.03.2023 SB2023031608
#VU73743 - Command injection
CWE-77 Low
No
No
1.1.6.30 16.03.2023 SB2023031603
#VU73742 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
1.1.6.34 16.03.2023 SB2023031602
#VU70577 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CWE-78 Low
No
No
1.1.6.28 02.01.2023 SB2023010224
#VU70574 - Command injection
CWE-77 Low
No
No
1.1.6.34 02.01.2023 SB2023010221
#VU70563 - Improper input validation
CWE-20 Medium
No
No
1.1.6.34 02.01.2023 SB2023010208
#VU70561 - Memory corruption
CWE-119 Medium
No
No
1.1.6.34 02.01.2023 SB2023010206
#VU64827 - Command injection
CWE-77 Low
No
No
1.1.6.28 30.06.2022 SB2022063018
#VU64824 - Command injection
CWE-77 Low
No
No
1.1.6.28 30.06.2022 SB2022063017
#VU64822 - Command injection
CWE-77 Low
No
No
1.1.6.34 30.06.2022 SB2022063016
#VU64815 - Improper input validation
CWE-20 Low
No
No
1.1.6.30 30.06.2022 SB2022063012
#VU61591 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27645
CWE-200 Low
No
No
1.1.6.34 24.03.2022 SB2022032410
#VU61588 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27647
CWE-200 Low
No
No
1.1.6.34 24.03.2022 SB2022032410
#VU61586 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27642
CWE-200 Low
No
No
1.1.6.34 24.03.2022 SB2022032410