Vulnerabilities
Vulnerable Software
Netgear:  Security Vulnerabilities
NETGEAR FVS318 running firmware 1.1 stores the username and password in a readable format when a backup of the configuration file is made, which allows local users to obtain sensitive information.
CVSS Score
2.1
EPSS Score
0.001
Published
2002-12-31
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26 uses a default administrator password and accepts admin logins on the external interface, which allows remote attackers to gain privileges if the password is not changed.
CVSS Score
7.5
EPSS Score
0.012
Published
2002-12-31
Netgear RM-356 and RT-338 series SOHO routers allow remote attackers to cause a denial of service (crash) via a UDP port scan, as demonstrated using nmap.
CVSS Score
5.0
EPSS Score
0.011
Published
2002-12-31
Netgear FM114P firmware 1.3 wireless firewall allows remote attackers to cause a denial of service (crash or hang) via a large number of TCP connection requests.
CVSS Score
7.8
EPSS Score
0.01
Published
2002-12-31
Netgear FM114P firmware 1.3 wireless firewall, when configured to backup configuration information, stores DDNS (DynDNS) user name and password, MAC address filtering table and possibly other information in cleartext, which could allow local users to obtain sensitive information.
CVSS Score
7.1
EPSS Score
0.004
Published
2002-12-31
Cross-site scripting vulnerability in web administration interface for NetGear RT314 and RT311 Gateway Routers allows remote attackers to execute arbitrary script on another client via a URL that contains the script.
CVSS Score
7.5
EPSS Score
0.008
Published
2002-05-29
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26, when configured to block traffic below port 1024, allows remote attackers to cause a denial of service (hang) via a port scan of the WAN port.
CVSS Score
5.0
EPSS Score
0.006
Published
2002-03-25
Atmel Firmware 1.3 Wireless Access Point (WAP) allows remote attackers to cause a denial of service via a SNMP request with (1) a community string other than "public" or (2) an unknown OID, which causes the WAP to deny subsequent SNMP requests.
CVSS Score
5.0
EPSS Score
0.007
Published
2001-12-21
SNMP service in Atmel 802.11b VNET-B Access Point 1.3 and earlier, as used in Netgear ME102 and Linksys WAP11, accepts arbitrary community strings with requested MIB modifications, which allows remote attackers to obtain sensitive information such as WEP keys, cause a denial of service, or gain access to the network.
CVSS Score
7.5
EPSS Score
0.007
Published
2001-07-21


Contact Us

Shodan ® - All rights reserved