cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2020-35785,https://securityvulnerability.io/vulnerability/CVE-2020-35785,,"NETGEAR DGN2200v1 devices before v1.0.0.60 mishandle HTTPd authentication (aka PSV-2020-0363, PSV-2020-0364, and PSV-2020-0365).",Netgear,Dgn2200 Firmware,8.3,HIGH,0.0006900000153109431,false,,false,false,false,,,false,false,,2020-12-30T00:15:00.000Z,0 CVE-2016-11054,https://securityvulnerability.io/vulnerability/CVE-2016-11054,,NETGEAR DGN2200v4 devices before 2017-01-06 are affected by command execution and an FTP insecure root directory.,Netgear,Dgn2200 Firmware,7.2,HIGH,0.001069999998435378,false,,false,false,false,,,false,false,,2020-04-28T15:57:29.000Z,0 CVE-2019-20754,https://securityvulnerability.io/vulnerability/CVE-2019-20754,,"Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects DGN2200 before 1.0.0.58, DGN2200B before 1.0.0.58, D8500 before 1.0.3.42, D7000v2 before 1.0.0.51, D6400 before 1.0.0.80, D6220 before 1.0.0.44, EX7000 before 1.0.0.66, EX6200 before 1.0.3.88, EX6150 before 1.0.0.42, EX7500 before 1.0.0.46, JNDR3000 before 1.0.0.24, R8000 before 1.0.4.18, R8500 before 1.0.2.122, R8300 before 1.0.2.122, R7900P before 1.4.0.10, R8000P before 1.4.0.10, R7900 before 1.0.2.16, R7000P before 1.3.1.44, R7300DST before 1.0.0.68, R7100LG before 1.0.0.46, R6900P before 1.3.1.44, R7000 before 1.0.9.32, R6900 before 1.0.1.46, R6700 before 1.0.1.46, R6400v2 before 1.0.2.56, R6400 before 1.0.1.42, R6300v2 before 1.0.4.28, R6250 before 1.0.4.26, WNDR4500v2 before 1.0.0.72, and WNR3500Lv2 before 1.2.0.54.",Netgear,Dgn2200 Firmware,6.8,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-04-16T21:07:26.000Z,0 CVE-2019-20753,https://securityvulnerability.io/vulnerability/CVE-2019-20753,,"Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects DGN2200v1 before 1.0.0.58, D8500 before 1.0.3.42, D7000v2 before 1.0.0.51, D6400 before 1.0.0.78, D6220 before 1.0.0.44, JNDR3000 before 1.0.0.24, R8000 before 1.0.4.18, R8500 before 1.0.2.122, R8300 before 1.0.2.122, R7900 before 1.0.2.16, R7000P before 1.3.2.34, R7300DST before 1.0.0.68, R7100LG before 1.0.0.46, R6900P before 1.3.2.34, R7000 before 1.0.9.28, R6900 before 1.0.1.46, R6700 before 1.0.1.46, R6400v2 before 1.0.2.56, R6400 before 1.0.1.42, R6300v2 before 1.0.4.28, R6250 before 1.0.4.26, WNDR3400v3 before 1.0.1.22, WNDR4500v2 before 1.0.0.72, and WNR3500Lv2 before 1.2.0.50.",Netgear,Dgn2200 Firmware,8.8,HIGH,0.0007900000200606883,false,,false,false,false,,,false,false,,2020-04-16T21:06:54.000Z,0 CVE-2019-20740,https://securityvulnerability.io/vulnerability/CVE-2019-20740,,"Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects DGN2200v4 before 1.0.0.110, DGND2200Bv4 before 1.0.0.109, R7300 before 1.0.0.70, R8300 before 1.0.2.130, and R8500 before 1.0.2.130.",Netgear,Dgn2200 Firmware,6.3,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-04-16T19:19:33.000Z,0 CVE-2019-20716,https://securityvulnerability.io/vulnerability/CVE-2019-20716,,Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects DGN2200v4 before 1.0.0.110 and DGND2200Bv4 before 1.0.0.109.,Netgear,Dgn2200 Firmware,6.8,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-04-16T15:42:11.000Z,0 CVE-2017-6366,https://securityvulnerability.io/vulnerability/CVE-2017-6366,,Cross-site request forgery (CSRF) vulnerability in NETGEAR DGN2200 routers with firmware 10.0.0.20 through 10.0.0.50 allows remote attackers to hijack the authentication of users for requests that perform DNS lookups via the host_name parameter to dnslookup.cgi. NOTE: this issue can be combined with CVE-2017-6334 to execute arbitrary code remotely.,Netgear,Dgn2200 Firmware,8.8,HIGH,0.0027600000612437725,false,,false,false,false,,,false,false,,2017-03-15T14:00:00.000Z,0 CVE-2017-6334,https://securityvulnerability.io/vulnerability/CVE-2017-6334,,"dnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the host_name field of an HTTP POST request, a different vulnerability than CVE-2017-6077.",Netgear,Dgn2200 Series Firmware,8.8,HIGH,0.9651399850845337,true,2022-03-25T00:00:00.000Z,false,false,true,2022-03-25T00:00:00.000Z,true,false,false,,2017-03-06T02:00:00.000Z,0 CVE-2017-6077,https://securityvulnerability.io/vulnerability/CVE-2017-6077,,ping.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the ping_IPAddr field of an HTTP POST request.,Netgear,Dgn2200 Firmware,9.8,CRITICAL,0.9558200240135193,true,2022-03-07T00:00:00.000Z,false,false,true,2022-03-07T00:00:00.000Z,true,false,false,,2017-02-22T23:00:00.000Z,0