Vulnerabilities (CVE)

Filtered by vendor Netgear Subscribe
Filtered by product Rax40 Firmware
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-45493 1 Netgear 6 Rax35, Rax35 Firmware, Rax38 and 3 more 2022-01-04 5.0 MEDIUM 7.5 HIGH
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RAX35 before 1.0.4.102, RAX38 before 1.0.4.102, and RAX40 before 1.0.4.102.
CVE-2021-41449 1 Netgear 6 Rax35, Rax35 Firmware, Rax38 and 3 more 2021-12-13 3.6 LOW 7.1 HIGH
A path traversal attack in web interfaces of Netgear RAX35, RAX38, and RAX40 routers before v1.0.4.102, allows a remote unauthenticated attacker to gain access to sensitive restricted information, such as forbidden files of the web application, via sending a specially crafted HTTP packet.
CVE-2021-38526 1 Netgear 6 Rax35, Rax35 Firmware, Rax38 and 3 more 2021-08-18 5.0 MEDIUM 7.5 HIGH
Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects RAX35 before 1.0.3.94, RAX38 before 1.0.3.94, and RAX40 before 1.0.3.94.
CVE-2019-20643 1 Netgear 2 Rax40, Rax40 Firmware 2021-07-21 5.0 MEDIUM 7.5 HIGH
NETGEAR RAX40 devices before 1.0.3.64 are affected by disclosure of sensitive information.
CVE-2020-26898 1 Netgear 2 Rax40, Rax40 Firmware 2020-10-19 8.3 HIGH 8.8 HIGH
NETGEAR RAX40 devices before 1.0.3.80 are affected by incorrect configuration of security settings.
CVE-2019-20641 1 Netgear 2 Rax40, Rax40 Firmware 2020-08-24 5.8 MEDIUM 8.8 HIGH
NETGEAR RAX40 devices before 1.0.3.64 are affected by lack of access control at the function level.
CVE-2019-20642 1 Netgear 2 Rax40, Rax40 Firmware 2020-08-24 5.2 MEDIUM 8.0 HIGH
NETGEAR RAX40 devices before 1.0.3.64 are affected by authentication bypass.