Home/Product/netgear d7000 firmware
Product

netgear d7000 firmware

92 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2021-45672
< 1.0.1.78
Certain NETGEAR devices are affected by Stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0
4.2MEDIUM
CVE-2021-45657
< 1.0.1.78
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 b
7.1HIGH
CVE-2021-45656
< 1.0.1.78
Certain NETGEAR devices are affected by server-side injection. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, R6020 b
7.1HIGH
CVE-2021-45641
< 1.0.1.74
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.72, D6000 be
4.6MEDIUM
CVE-2021-45640
< 1.0.1.74
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D3600 before 1.0.0.72, D6000 be
3.9LOW
CVE-2021-45636
< 1.0.1.82
NETGEAR D7000 devices before 1.0.1.82 are affected by a stack-based buffer overflow by an unauthenticated attacker.
5.4MEDIUM
CVE-2021-45551
< 1.0.1.78
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.40, D7000 bef
7.6HIGH
CVE-2021-45534
< 1.0.1.82
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects AC2100 before 1.2.0.88, AC2400 be
7.8HIGH
CVE-2021-45512
< 1.0.0.62
Certain NETGEAR devices are affected by weak cryptography. This affects D7000v2 before 1.0.0.62, D8500 before 1.0.3.50, EX3700 bef
8.6HIGH
CVE-2021-45511
< 1.0.1.80
Certain NETGEAR devices are affected by authentication bypass. This affects AC2100 before 2021-08-27, AC2400 before 2021-08-27, AC
6.8MEDIUM
CVE-2021-45501
< 1.0.1.82
Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000
9.4CRITICAL
CVE-2021-45497
< 1.0.1.82
NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass.
9.4CRITICAL
CVE-2021-45496
< 1.0.1.82
NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass.
9.1CRITICAL
CVE-2021-45495
< 1.0.1.68
NETGEAR D7000 devices before 1.0.1.68 are affected by authentication bypass.
6.5MEDIUM
CVE-2021-38537
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0
4.2MEDIUM
CVE-2021-38536
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0
4.3MEDIUM
CVE-2021-38535
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0
4.3MEDIUM
CVE-2021-38534
< 1.0.1.70
Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 before 1.0.0.
4.1MEDIUM
CVE-2021-38531
< 1.0.1.78
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6200 before 1.1.00.40, D7000 b
4.7MEDIUM
CVE-2021-38525
< 1.0.1.70
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D3600 before 1.0.0.76
6.8MEDIUM
CVE-2021-38516
< 1.0.0.52
Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48, D6400 be
10.0CRITICAL
CVE-2021-38514
< 1.0.1.70
Certain NETGEAR devices are affected by authentication bypass. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, D6100 be
2.4LOW
CVE-2021-27239
< 1.0.0.66
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and R670
8.8HIGH
CVE-2020-35842
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1
6.9MEDIUM
CVE-2020-35841
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1
6.9MEDIUM
CVE-2020-35840
< 1.0.1.78
Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JNR1010v2 before 1
6.9MEDIUM
CVE-2020-35803
< 1.0.1.78
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D6200 before 1.1.00.40, D7000 before 1.0
4.4MEDIUM
CVE-2020-35799
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2020-35787
< 1.0.1.70
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D3600 before 1.0.0.76, D6000 befo
8.0HIGH
CVE-2020-26927
< 1.0.1.78
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 b
9.4CRITICAL
CVE-2020-26916
< 1.0.1.78
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6200 before 1.1.00.38, D7000 b
5.4MEDIUM
CVE-2020-26914
< 1.0.1.78
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.38, D7000 bef
6.7MEDIUM
CVE-2020-26912
< 1.0.1.78
Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before 1.0.1.24,
7.5HIGH
CVE-2020-26911
< 1.0.1.78
Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6200 before 1.1.00.38, D7000 b
8.3HIGH
CVE-2020-26908
< 1.0.1.74
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000
9.4CRITICAL
CVE-2018-21225
< 1.0.1.60
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000 before 1.0.1.60, D7800 befo
6.8MEDIUM
CVE-2018-21169
< 2018-03-01
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7000 before 2018-03-01, D7800
8.8HIGH
CVE-2018-21168
< 1.0.1.52
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D7000 before 1.0.1.52, D7800 before 1.0.
7.5HIGH
CVE-2018-21156
< 1.0.0.74
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.38, D6400 befo
7.2HIGH
CVE-2018-21231
< 1.0.1.60
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D1500 before 1.0.0.27, D500 bef
5.4MEDIUM
CVE-2018-21230
< 1.0.1.60
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D1500 before 1.0.0.27, D500 bef
5.4MEDIUM
CVE-2017-18703
< 1.0.1.50
Certain NETGEAR devices are affected by CSRF. This affects D1500 before 1.0.0.25, D500 before 1.0.0.25, D6100 before 1.0.0.55, D70
8.8HIGH
CVE-2017-18700
< 1.0.1.50
Certain NETGEAR devices are affected by stored XSS. This affects D6400 before 1.0.0.60, D7000 before 1.0.1.50, D8500 before 1.0.3.
6.1MEDIUM
CVE-2018-21139
< 1.0.1.68
Certain NETGEAR devices are affected by disclosure of sensitive information. This affects D1500 before 1.0.0.27, D500 before 1.0.0
7.5HIGH
CVE-2018-21134
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6700 before 1.
9.8CRITICAL
CVE-2017-18764
< 1.0.1.50
Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D6100 before 1.0.0.55, D700
8.8HIGH
CVE-2017-18785
< 1.0.1.52
Certain NETGEAR devices are affected by XSS. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, D62
4.8MEDIUM
CVE-2017-18784
< 1.0.1.52
Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44
6.1MEDIUM
CVE-2017-18783
< 1.0.1.52
Certain NETGEAR devices are affected by XSS. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.44
6.1MEDIUM
CVE-2017-18782
< 1.0.1.52
Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JR6150 before 1.0.1.12,
8.8HIGH
CVE-2017-18781
< 1.0.1.52
Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 before 1.1.0.4
8.8HIGH
CVE-2017-18780
< 1.0.1.52
Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 b
5.5MEDIUM
CVE-2017-18779
< 1.0.1.52
Certain NETGEAR devices are affected by a buffer overflow. This affects D6200 before 1.1.00.24, D7000 before 1.0.1.52, JNR1010v2 b
7.8HIGH
CVE-2017-18778
< 1.0.1.52
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D6220 before 1.0.0.28, D6400 be
5.5MEDIUM
CVE-2017-18776
< 1.0.1.50
Certain NETGEAR devices are affected by authentication bypass. This affects D6100 before V1.0.0.55, D7000 before V1.0.1.50, D7800
8.4HIGH
CVE-2017-18769
< 1.0.1.60
Certain NETGEAR devices are affected by an attacker's ability to read arbitrary files. This affects D6220 before 1.0.0.40, D6400 b
4.6MEDIUM
CVE-2017-18788
< 1.0.1.52
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.67, D6000 befo
6.7MEDIUM
CVE-2017-18801
< 1.0.1.50
Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.50, R6700v2 before 1.1.0.38, R6800 befo
6.7MEDIUM
CVE-2017-18798
< 1.0.1.50
Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects R6700v2 before 1.1.0.38, R6800
6.2MEDIUM
CVE-2017-18791
< 1.0.1.50
Certain NETGEAR devices are affected by CSRF. This affects R6050/JR6150 before 1.0.1.7, PR2000 before 1.0.0.17, R6220 before 1.1.0
8.8HIGH
CVE-2017-18844
< 1.0.1.50
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38, R6800 befo
7.8HIGH
CVE-2017-18843
< 1.0.1.50
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects R6700v2 before 1.1.0.38, R6800 befo
7.8HIGH
CVE-2017-18841
< 1.0.1.50
Certain NETGEAR devices are affected by command injection. This affects R6220 before 1.1.0.46, R6700v2 before 1.1.0.38, R6800 befo
6.7MEDIUM
CVE-2019-20755
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6220 before 1.0.0.46
6.8MEDIUM
CVE-2019-20754
< 1.0.0.51
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects DGN2200 before 1.0.0.58, DGN2200B
6.8MEDIUM
CVE-2019-20753
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects DGN2200v1 befor
8.8HIGH
CVE-2019-20737
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.
6.7MEDIUM
CVE-2019-20733
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.
6.7MEDIUM
CVE-2019-20732
< 1.0.0.74
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.40, D7000v2 be
6.7MEDIUM
CVE-2019-20731
< 1.0.0.74
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.40, D6400 befo
6.7MEDIUM
CVE-2019-20730
< 1.0.1.60
Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1
9.8CRITICAL
CVE-2019-20728
< 1.0.0.74
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6400 before 1.0.0.74, D7000v2 be
6.7MEDIUM
CVE-2019-20719
< 1.0.0.52
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.48, D6400 befo
6.8MEDIUM
CVE-2019-20718
all versions
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.48, D6400 befo
6.8MEDIUM
CVE-2019-20712
< 1.0.0.53
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.52, D6400 befo
6.8MEDIUM
CVE-2019-20700
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.
6.7MEDIUM
CVE-2019-20692
< 1.0.0.51
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6220 before 1.
6.7MEDIUM
CVE-2019-20690
< 1.0.1.66
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.30, D7000 before 1.0.1.66, R6020 b
8.8HIGH
CVE-2019-20687
< 1.0.1.70
Certain NETGEAR devices are affected by denial of service. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.70, JR6150 befo
7.5HIGH
CVE-2019-20686
< 1.0.1.74
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D6200 before 1.1.00.36, D70
8.8HIGH
CVE-2019-20685
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2019-20684
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2019-20683
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2019-20682
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2019-20681
< 1.0.1.68
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, JR6150
8.8HIGH
CVE-2019-20680
< 1.0.0.53
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000v2 before 1.0.0.53, R6220 be
8.0HIGH
CVE-2019-20657
< 1.0.1.74
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 bef
8.0HIGH
CVE-2019-20656
< 1.0.1.74
Certain NETGEAR devices are affected by a hardcoded password. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 b
8.8HIGH
CVE-2020-11788
< 1.0.1.68
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, PR2000
8.8HIGH
CVE-2019-20640
< 1.0.1.68
Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.
8.8HIGH
CVE-2020-11770
< 1.0.0.53
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.52, D6400 befo
8.8HIGH
CVE-2016-10174
all versions
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_ch
9.8CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin