cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2021-34236,https://securityvulnerability.io/vulnerability/CVE-2021-34236,Buffer Overflow Vulnerability in Netgear R8000 Router,"A buffer overflow vulnerability exists in the Netgear R8000 Router, specifically in firmware version 1.0.4.56. This flaw allows remote attackers to exploit the router by sending a specially crafted POST request to the '/bd_genie_create_account.cgi' endpoint, using an excessively long 'register_country' parameter. Successful exploitation could lead to remote code execution or a denial-of-service condition, posing serious risks to network security.",Netgear,R8000 Firmware,9.8,CRITICAL,0.004579999949783087,false,,false,false,false,,,false,false,,2022-09-08T00:15:00.000Z,0 CVE-2021-45524,https://securityvulnerability.io/vulnerability/CVE-2021-45524,Buffer Overflow Vulnerability in NETGEAR R8000 Routers,"A buffer overflow vulnerability exists in the NETGEAR R8000 routers, allowing an authenticated user to exploit the device. This flaw occurs in versions of the firmware prior to 1.0.4.62, meaning users could potentially execute arbitrary code or disrupt services. It is crucial for users of affected routers to update to the latest firmware to protect against potential security risks. For more details, refer to the NETGEAR Security Advisory.",Netgear,R8000 Firmware,7.6,HIGH,0.0009599999757483602,false,,false,false,false,,,false,false,,2021-12-26T00:58:52.000Z,0 CVE-2021-45532,https://securityvulnerability.io/vulnerability/CVE-2021-45532,Command Injection Vulnerability in NETGEAR R8000 Routers,"NETGEAR R8000 routers prior to version 1.0.4.76 are susceptible to a command injection vulnerability. This flaw permits authenticated users to execute arbitrary commands on the device, which could potentially compromise the integrity and confidentiality of the router's settings and the network it manages. It is crucial for users to update their devices to the latest firmware to mitigate this security risk. Further details can be found in the official security advisory documentation.",Netgear,R8000 Firmware,6.7,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-12-26T00:57:12.000Z,0 CVE-2021-45543,https://securityvulnerability.io/vulnerability/CVE-2021-45543,Command Injection Vulnerability in NETGEAR Routers and WiFi Systems,Certain NETGEAR routers and WiFi systems are susceptible to a command injection vulnerability. This issue allows an authenticated user to execute arbitrary commands on the system. Attackers can exploit this vulnerability if they gain access to affected devices with the specified firmware versions. Users are advised to update to the latest firmware to mitigate risks and enhance their security.,Netgear,R8000 Firmware,8.4,HIGH,0.0004400000034365803,false,,false,false,false,,,false,false,,2021-12-26T00:53:32.000Z,0 CVE-2017-18761,https://securityvulnerability.io/vulnerability/CVE-2017-18761,,NETGEAR R8000 devices before 1.0.4.2 are affected by a stack-based buffer overflow by an authenticated user.,Netgear,R8000 Firmware,6.8,MEDIUM,0.0004400000034365803,false,,false,false,false,,,false,false,,2020-04-22T15:45:23.000Z,0 CVE-2016-6277,https://securityvulnerability.io/vulnerability/CVE-2016-6277,,"NETGEAR R6250 before 1.0.4.6.Beta, R6400 before 1.0.1.18.Beta, R6700 before 1.0.1.14.Beta, R6900, R7000 before 1.0.7.6.Beta, R7100LG before 1.0.0.28.Beta, R7300DST before 1.0.0.46.Beta, R7900 before 1.0.1.8.Beta, R8000 before 1.0.3.26.Beta, D6220, D6400, D7000, and possibly other routers allow remote attackers to execute arbitrary commands via shell metacharacters in the path info to cgi-bin/.",Netgear,"D6220 Firmware,D6400 Firmware,R6250 Firmware,R6400 Firmware,R6700 Firmware,R6900 Firmware,R7000 Firmware,R7100lg Firmware,R7300dst Firmware,R7900 Firmware,R8000 Firmware",8.8,HIGH,0.9718300104141235,true,2022-03-07T00:00:00.000Z,false,false,true,2022-03-07T00:00:00.000Z,true,false,false,,2016-12-14T16:00:00.000Z,0