Known vulnerabilities in RS400

Vendor: NETGEAR
Software: RS400
Software CPE: cpe:2.3:h:netgear:rs400:*:*:*:*:*:*:*:*
Total vulnerabilities: 20
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting RS400 RS400 is affected by 20 known vulnerabilities: 3 high, 4 medium, 13 low Critical High Medium Low

Vulnerabilities (20)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU73748 - Command injection
CWE-77 Medium
No
No
1.5.1.80 16.03.2023 SB2023031619
#VU73746 - Memory corruption
CWE-119 Low
No
No
1.5.1.86 16.03.2023 SB2023031608
#VU73697 - Stack-based buffer overflow
CWE-121 Low
No
No
1.5.1.86 15.03.2023 SB2023031507
#VU73696 - Stack-based buffer overflow
CWE-121 Low
No
No
1.5.1.80 15.03.2023 SB2023031506
#VU70577 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CWE-78 Low
No
No
1.5.1.80 02.01.2023 SB2023010224
#VU70574 - Command injection
CWE-77 Low
No
No
1.5.1.80 02.01.2023 SB2023010221
#VU64822 - Command injection
CWE-77 Low
No
No
1.5.1.80 30.06.2022 SB2022063016
#VU64819 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CWE-79 Low
No
No
1.5.1.86 30.06.2022 SB2022063014
#VU64814 - Stack-based buffer overflow
CWE-121 High
No
No
1.5.1.86 30.06.2022 SB2022063006
#VU64813 - Stack-based buffer overflow
CWE-121 Medium
No
No
1.5.1.86 30.06.2022 SB2022063008
#VU62047 - Exposure of sensitive information to an unauthorized actor
CWE-200 Low
No
No
1.5.1.80 11.04.2022 SB2022041108
#VU61592 - Improper Authentication
CVE-2022-27643
CWE-287 Low
No
No
1.5.1.86 24.03.2022 SB2022032410
#VU61590 - Improper Authentication
CVE-2022-27646
CWE-287 Low
Available
No
1.5.1.86 24.03.2022 SB2022032410
#VU61589 - Improper Authentication
CVE-2022-27644
CWE-287 Low
No
No
1.5.1.86 24.03.2022 SB2022032410
#VU61588 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27647
CWE-200 Low
No
No
1.5.1.86 24.03.2022 SB2022032410
#VU61586 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27642
CWE-200 Low
No
No
1.5.1.86 24.03.2022 SB2022032410
#VU61584 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2011-5325
CWE-22 Medium
No
No
1.5.1.86 24.03.2022 SB20170807113
SB2022032408
SB2021102722
and 4 more
#VU56818 - Improper Control of Generation of Code ('Code Injection')
CVE-2021-40847
CWE-94 High
No
No
1.5.1.80 22.09.2021 SB2021092208
#VU50953 - Stack-based buffer overflow
CVE-2021-27239
CWE-121 Medium
No
No
1.5.0.68_hotfix 25.02.2021 SB2021022529
#VU34072 - Stack-based buffer overflow
CVE-2020-15636
CWE-121 High
No
No
1.0.4.98 05.08.2020 SB2020080514