Known vulnerabilities in R8000

Vendor: NETGEAR
Software: R8000
Software CPE: cpe:2.3:h:netgear:r8000:*:*:*:*:*:*:*:*
Total vulnerabilities: 30
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting R8000 R8000 is affected by 30 known vulnerabilities: 3 high, 1 medium, 26 low Critical High Medium Low

Vulnerabilities (30)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU94109 - Memory corruption
CWE-119 Low
No
No
1.0.4.84 11.07.2024 SB2024071135
#VU91572 - Command injection
CWE-77 Low
No
No
1.0.4.88 10.06.2024 SB2024061005
#VU77787 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.0.4.84 29.06.2023 SB2023062916
#VU76456 - Memory corruption
CVE-2023-31070
CWE-119 Low
Available
No
- 24.05.2023 SB2023052407
#VU73700 - Memory corruption
CWE-119 Low
No
No
1.0.4.84 15.03.2023 SB2023031509
#VU73697 - Stack-based buffer overflow
CWE-121 Low
No
No
1.0.4.84 15.03.2023 SB2023031507
#VU73696 - Stack-based buffer overflow
CWE-121 Low
No
No
1.0.4.74 15.03.2023 SB2023031506
#VU70579 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CWE-78 Low
No
No
1.0.4.68 02.01.2023 SB2023010226
#VU70578 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CWE-78 Low
No
No
1.0.4.84 02.01.2023 SB2023010225
#VU70574 - Command injection
CWE-77 Low
No
No
1.0.4.74 02.01.2023 SB2023010221
#VU70572 - Memory corruption
CWE-119 Low
No
No
1.0.4.68 02.01.2023 SB2023010219
#VU70564 - Command injection
CWE-77 Low
No
No
1.0.4.74 02.01.2023 SB2023010209
#VU70093 - Improper input validation
CWE-20 Low
No
No
1.0.4.74 09.12.2022 SB2022120917
#VU64858 - Command injection
CWE-77 Low
No
No
1.0.4.84 01.07.2022 SB2022070114
#VU64836 - Memory corruption
CWE-119 Low
No
No
1.0.4.76 30.06.2022 SB2022063024
#VU64832 - Command injection
CWE-77 Low
No
No
1.0.4.68 30.06.2022 SB2022063021
#VU64827 - Command injection
CWE-77 Low
No
No
1.0.4.74 30.06.2022 SB2022063018
#VU64824 - Command injection
CWE-77 Low
No
No
1.0.4.74 30.06.2022 SB2022063017
#VU64822 - Command injection
CWE-77 Low
No
No
1.0.4.74 30.06.2022 SB2022063016
#VU64819 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.0.4.74 30.06.2022 SB2022063014


Showing elements 1 - 20 out of 30