Wayne Low

Researcher fromFortinet’s FortiGuard Lab
#858of 53,632
235.9Total CVSS
Vulnerabilities · 31
Medium
11
High
17
Critical
3
PT-2020-10693
6.8
2020-04-16
NetGear · D6400 · CVE-2019-20718
**Name of the Vulnerable Software and Affected Versions** NETGEAR D6220 versions prior to 1.0.0.48 NETGEAR D6400 versions prior to 1.0.0.82 NETGEAR D7000v2 versions prior to 1.0.0.52 NETGEAR D8500 versions prior to 1.0.3.43 NETGEAR R6250 versions prior to 1.0.4.34 NETGEAR R6400 versions prior to 1.0.1.44 NETGEAR R6400v2 versions prior to 1.0.2.62 NETGEAR R7100LG versions prior to 1.0.0.48 NETGEAR R7300DST versions prior to 1.0.0.68 NETGEAR R7900 versions prior to 1.0.3.8 NETGEAR R7900P versions prior to 1.4.1.30 NETGEAR R8000 versions prior to 1.0.4.28 NETGEAR R8000P versions prior to 1.4.1.30 NETGEAR R8300 versions prior to 1.0.2.128 NETGEAR R8500 versions prior to 1.0.2.128 **Description** The issue allows command injection by an authenticated user. **Recommendations** For NETGEAR D6220 version prior to 1.0.0.48, update to version 1.0.0.48 or later. For NETGEAR D6400 version prior to 1.0.0.82, update to version 1.0.0.82 or later. For NETGEAR D7000v2 version prior to 1.0.0.52, update to version 1.0.0.52 or later. For NETGEAR D8500 version prior to 1.0.3.43, update to version 1.0.3.43 or later. For NETGEAR R6250 version prior to 1.0.4.34, update to version 1.0.4.34 or later. For NETGEAR R6400 version prior to 1.0.1.44, update to version 1.0.1.44 or later. For NETGEAR R6400v2 version prior to 1.0.2.62, update to version 1.0.2.62 or later. For NETGEAR R7100LG version prior to 1.0.0.48, update to version 1.0.0.48 or later. For NETGEAR R7300DST version prior to 1.0.0.68, update to version 1.0.0.68 or later. For NETGEAR R7900 version prior to 1.0.3.8, update to version 1.0.3.8 or later. For NETGEAR R7900P version prior to 1.4.1.30, update to version 1.4.1.30 or later. For NETGEAR R8000 version prior to 1.0.4.28, update to version 1.0.4.28 or later. For NETGEAR R8000P version prior to 1.4.1.30, update to version 1.4.1.30 or later. For NETGEAR R8300 version prior to 1.0.2.128, update to version 1.0.2.128 or later. For NETGEAR R8500 version prior to 1.0.2.128, update to version 1.0.2.128 or later.
PT-2020-10694
6.8
2020-04-16
NetGear · R7900P · CVE-2019-20719
**Name of the Vulnerable Software and Affected Versions** NETGEAR D6220 versions 1.0.0.0 through 1.0.0.47 NETGEAR D6400 versions 1.0.0.0 through 1.0.0.81 NETGEAR D7000v2 versions 1.0.0.0 through 1.0.0.51 NETGEAR D8500 versions 1.0.0.0 through 1.0.3.42 NETGEAR R6250 versions 1.0.0.0 through 1.0.4.33 NETGEAR R6400 versions 1.0.0.0 through 1.0.1.43 NETGEAR R6400v2 versions 1.0.0.0 through 1.0.2.61 NETGEAR R7000P versions 1.0.0.0 through 1.4.1.29 NETGEAR R7100LG versions 1.0.0.0 through 1.0.0.47 NETGEAR R7300DST versions 1.0.0.0 through 1.0.0.67 NETGEAR R7900 versions 1.0.0.0 through 1.0.3.7 NETGEAR R7900P versions 1.0.0.0 through 1.4.1.29 NETGEAR R8000 versions 1.0.0.0 through 1.0.4.27 NETGEAR R8000P versions 1.0.0.0 through 1.4.1.29 NETGEAR R8300 versions 1.0.0.0 through 1.0.2.127 NETGEAR R8500 versions 1.0.0.0 through 1.0.2.127 **Description** A buffer overflow issue affects certain NETGEAR devices, allowing an authenticated user to potentially exploit this issue. **Recommendations** For NETGEAR D6220 version 1.0.0.47 and earlier, update to version 1.0.0.48 or later. For NETGEAR D6400 version 1.0.0.81 and earlier, update to version 1.0.0.82 or later. For NETGEAR D7000v2 version 1.0.0.51 and earlier, update to version 1.0.0.52 or later. For NETGEAR D8500 version 1.0.3.42 and earlier, update to version 1.0.3.43 or later. For NETGEAR R6250 version 1.0.4.33 and earlier, update to version 1.0.4.34 or later. For NETGEAR R6400 version 1.0.1.43 and earlier, update to version 1.0.1.44 or later. For NETGEAR R6400v2 version 1.0.2.61 and earlier, update to version 1.0.2.62 or later. For NETGEAR R7000P version 1.4.1.29 and earlier, update to version 1.4.1.30 or later. For NETGEAR R7100LG version 1.0.0.47 and earlier, update to version 1.0.0.48 or later. For NETGEAR R7300DST version 1.0.0.67 and earlier, update to version 1.0.0.68 or later. For NETGEAR R7900 version 1.0.3.7 and earlier, update to version 1.0.3.8 or later. For NETGEAR R7900P version 1.4.1.29 and earlier, update to version 1.4.1.30 or later. For NETGEAR R8000 version 1.0.4.27 and earlier, update to version 1.0.4.28 or later. For NETGEAR R8000P version 1.4.1.29 and earlier, update to version 1.4.1.30 or later. For NETGEAR R8300 version 1.0.2.127 and earlier, update to version 1.0.2.128 or later. For NETGEAR R8500 version 1.0.2.127 and earlier, update to version 1.0.2.128 or later.
PT-2020-10689
4.8
2020-04-16
NetGear · Rbr50 · CVE-2019-20714
**Name of the Vulnerable Software and Affected Versions** NETGEAR D3600 versions 1.0.0.0 through 1.0.0.74 NETGEAR D6000 versions 1.0.0.0 through 1.0.0.74 NETGEAR D7800 versions 1.0.0.0 through 1.0.1.43 NETGEAR DM200 versions 1.0.0.0 through 1.0.0.57 NETGEAR R7500v2 versions 1.0.0.0 through 1.0.3.39 NETGEAR R7800 versions 1.0.0.0 through 1.0.2.59 NETGEAR R8900 versions 1.0.0.0 through 1.0.4.11 NETGEAR R9000 versions 1.0.0.0 through 1.0.4.11 NETGEAR RBK20 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBR20 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBS20 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBK50 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBR50 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBS50 versions 2.3.0.0 through 2.3.0.21 NETGEAR RBS40 versions 2.3.0.0 through 2.3.0.21 NETGEAR WN3000RPv2 versions 1.0.0.0 through 1.0.0.67 NETGEAR WN3000RPv3 versions 1.0.0.0 through 1.0.2.69 NETGEAR WN3100RPv2 versions 1.0.0.0 through 1.0.0.59 NETGEAR WNDR4300v2 versions 1.0.0.0 through 1.0.0.57 NETGEAR WNDR4500v3 versions 1.0.0.0 through 1.0.0.57 NETGEAR WNR2000v5 versions 1.0.0.0 through 1.0.0.67 **Description** The issue is related to stored XSS, which affects certain NETGEAR devices. **Recommendations** Update NETGEAR D3600 to version 1.0.0.75 or later. Update NETGEAR D6000 to version 1.0.0.75 or later. Update NETGEAR D7800 to version 1.0.1.44 or later. Update NETGEAR DM200 to version 1.0.0.58 or later. Update NETGEAR R7500v2 to version 1.0.3.40 or later. Update NETGEAR R7800 to version 1.0.2.60 or later. Update NETGEAR R8900 to version 1.0.4.12 or later. Update NETGEAR R9000 to version 1.0.4.12 or later. Update NETGEAR RBK20 to version 2.3.0.22 or later. Update NETGEAR RBR20 to version 2.3.0.22 or later. Update NETGEAR RBS20 to version 2.3.0.22 or later. Update NETGEAR RBK50 to version 2.3.0.22 or later. Update NETGEAR RBR50 to version 2.3.0.22 or later. Update NETGEAR RBS50 to version 2.3.0.22 or later. Update NETGEAR RBS40 to version 2.3.0.22 or later. Update NETGEAR WN3000RPv2 to version 1.0.0.68 or later. Update NETGEAR WN3000RPv3 to version 1.0.2.70 or later. Update NETGEAR WN3100RPv2 to version 1.0.0.60 or later. Update NETGEAR WNDR4300v2 to version 1.0.0.58 or later. Update NETGEAR WNDR4500v3 to version 1.0.0.58 or later. Update NETGEAR WNR2000v5 to version 1.0.0.68 or later.
PT-2020-10692
6.5
2020-04-16
NetGear · Rbr50 · CVE-2019-20717
**Name of the Vulnerable Software and Affected Versions** D3600 versions prior to 1.0.0.75 D6000 versions prior to 1.0.0.75 D7800 versions prior to 1.0.1.44 EX2700 versions prior to 1.0.1.52 EX6200v2 versions prior to 1.0.1.74 EX8000 versions prior to 1.0.1.180 R7500v2 versions prior to 1.0.3.38 R7800 versions prior to 1.0.2.58 RBK20 versions prior to 2.3.0.28 RBR20 versions prior to 2.3.0.28 RBS20 versions prior to 2.3.0.28 RBK50 versions prior to 2.3.0.32 RBR50 versions prior to 2.3.0.32 RBS50 versions prior to 2.3.0.32 RBS40 versions prior to 2.3.0.28 SRK60 versions prior to 2.2.1.210 SRR60 versions prior to 2.2.1.210 SRS60 versions prior to 2.2.1.210 WN2000RPTv3 versions prior to 1.0.1.34 WN3000RPv2 versions prior to 1.0.0.68 WN3000RPv3 versions prior to 1.0.2.70 WN3100RPv2 versions prior to 1.0.0.60 WNDR4300v2 versions prior to 1.0.0.58 WNDR4500v3 versions prior to 1.0.0.58 **Description** The issue affects certain NETGEAR devices, causing a denial of service. **Recommendations** For D3600 versions prior to 1.0.0.75, update to version 1.0.0.75 or later. For D6000 versions prior to 1.0.0.75, update to version 1.0.0.75 or later. For D7800 versions prior to 1.0.1.44, update to version 1.0.1.44 or later. For EX2700 versions prior to 1.0.1.52, update to version 1.0.1.52 or later. For EX6200v2 versions prior to 1.0.1.74, update to version 1.0.1.74 or later. For EX8000 versions prior to 1.0.1.180, update to version 1.0.1.180 or later. For R7500v2 versions prior to 1.0.3.38, update to version 1.0.3.38 or later. For R7800 versions prior to 1.0.2.58, update to version 1.0.2.58 or later. For RBK20 versions prior to 2.3.0.28, update to version 2.3.0.28 or later. For RBR20 versions prior to 2.3.0.28, update to version 2.3.0.28 or later. For RBS20 versions prior to 2.3.0.28, update to version 2.3.0.28 or later. For RBK50 versions prior to 2.3.0.32, update to version 2.3.0.32 or later. For RBR50 versions prior to 2.3.0.32, update to version 2.3.0.32 or later. For RBS50 versions prior to 2.3.0.32, update to version 2.3.0.32 or later. For RBS40 versions prior to 2.3.0.28, update to version 2.3.0.28 or later. For SRK60 versions prior to 2.2.1.210, update to version 2.2.1.210 or later. For SRR60 versions prior to 2.2.1.210, update to version 2.2.1.210 or later. For SRS60 versions prior to 2.2.1.210, update to version 2.2.1.210 or later. For WN2000RPTv3 versions prior to 1.0.1.34, update to version 1.0.1.34 or later. For WN3000RPv2 versions prior to 1.0.0.68, update to version 1.0.0.68 or later. For WN3000RPv3 versions prior to 1.0.2.70, update to version 1.0.2.70 or later. For WN3100RPv2 versions prior to 1.0.0.60, update to version 1.0.0.60 or later. For WNDR4300v2 versions prior to 1.0.0.58, update to version 1.0.0.58 or later. For WNDR4500v3 versions prior to 1.0.0.58, update to version 1.0.0.58 or later.
PT-2020-10688
6.8
2020-04-16
NetGear · R7900P · CVE-2019-20713
**Name of the Vulnerable Software and Affected Versions** NETGEAR D8500 versions prior to 1.0.3.44 NETGEAR R6250 versions prior to 1.0.4.34 NETGEAR R6300v2 versions prior to 1.0.4.32 NETGEAR R6400 versions prior to 1.0.1.46 NETGEAR R6700 versions prior to 1.0.2.6 NETGEAR R6900 versions prior to 1.0.2.4 NETGEAR R6900P versions prior to 1.3.1.64 NETGEAR R7000 versions prior to 1.0.9.42 NETGEAR R7000P versions prior to 1.3.1.64 NETGEAR R7100LG versions prior to 1.0.0.50 NETGEAR R7300DST versions prior to 1.0.0.70 NETGEAR R7900 versions prior to 1.0.3.8 NETGEAR R7900P versions prior to 1.4.1.30 NETGEAR R8000 versions prior to 1.0.4.28 NETGEAR R8000P versions prior to 1.4.1.30 NETGEAR R8300 versions prior to 1.0.2.128 NETGEAR R8500 versions prior to 1.0.2.128 **Description** A stack-based buffer overflow issue affects certain NETGEAR devices, allowing an authenticated user to potentially exploit this issue. **Recommendations** For NETGEAR D8500 version prior to 1.0.3.44, update to version 1.0.3.44 or later. For NETGEAR R6250 version prior to 1.0.4.34, update to version 1.0.4.34 or later. For NETGEAR R6300v2 version prior to 1.0.4.32, update to version 1.0.4.32 or later. For NETGEAR R6400 version prior to 1.0.1.46, update to version 1.0.1.46 or later. For NETGEAR R6700 version prior to 1.0.2.6, update to version 1.0.2.6 or later. For NETGEAR R6900 version prior to 1.0.2.4, update to version 1.0.2.4 or later. For NETGEAR R6900P version prior to 1.3.1.64, update to version 1.3.1.64 or later. For NETGEAR R7000 version prior to 1.0.9.42, update to version 1.0.9.42 or later. For NETGEAR R7000P version prior to 1.3.1.64, update to version 1.3.1.64 or later. For NETGEAR R7100LG version prior to 1.0.0.50, update to version 1.0.0.50 or later. For NETGEAR R7300DST version prior to 1.0.0.70, update to version 1.0.0.70 or later. For NETGEAR R7900 version prior to 1.0.3.8, update to version 1.0.3.8 or later. For NETGEAR R7900P version prior to 1.4.1.30, update to version 1.4.1.30 or later. For NETGEAR R8000 version prior to 1.0.4.28, update to version 1.0.4.28 or later. For NETGEAR R8000P version prior to 1.4.1.30, update to version 1.4.1.30 or later. For NETGEAR R8300 version prior to 1.0.2.128, update to version 1.0.2.128 or later. For NETGEAR R8500 version prior to 1.0.2.128, update to version 1.0.2.128 or later.
PT-2020-10687
6.8
2020-04-16
NetGear · R7900P · CVE-2019-20712
**Name of the Vulnerable Software and Affected Versions** NETGEAR D6220 versions 1.0.0.0 through 1.0.0.51 NETGEAR D6400 versions 1.0.0.0 through 1.0.0.85 NETGEAR D7000v2 versions 1.0.0.0 through 1.0.0.52 NETGEAR D8500 versions 1.0.0.0 through 1.0.3.43 NETGEAR DGN2200v4 versions 1.0.0.0 through 1.0.0.109 NETGEAR DGND2200Bv4 versions 1.0.0.0 through 1.0.0.108 NETGEAR R6250 versions 1.0.0.0 through 1.0.4.33 NETGEAR R6300v2 versions 1.0.0.0 through 1.0.4.31 NETGEAR R6400 versions 1.0.0.0 through 1.0.1.45 NETGEAR R6400v2 versions 1.0.0.0 through 1.0.2.61 NETGEAR R6700 versions 1.0.0.0 through 1.0.2.5 NETGEAR R6900 versions 1.0.0.0 through 1.0.2.3 NETGEAR R6900P versions 1.0.0.0 through 1.3.1.63 NETGEAR R7000 versions 1.0.0.0 through 1.0.9.59 NETGEAR R7000P versions 1.0.0.0 through 1.3.1.63 NETGEAR R7100LG versions 1.0.0.0 through 1.0.0.51 NETGEAR R7300DST versions 1.0.0.0 through 1.0.0.69 NETGEAR R7900 versions 1.0.0.0 through 1.0.3.7 NETGEAR R7900P versions 1.0.0.0 through 1.4.1.29 NETGEAR R8000 versions 1.0.0.0 through 1.0.4.27 NETGEAR R8000P versions 1.0.0.0 through 1.4.1.29 NETGEAR R8300 versions 1.0.0.0 through 1.0.2.127 NETGEAR R8500 versions 1.0.0.0 through 1.0.2.127 NETGEAR WNDR3400v3 versions 1.0.0.0 through 1.0.1.23 NETGEAR WNR3500Lv2 versions 1.0.0.0 through 1.2.0.55 **Description** The issue is a buffer overflow that can be triggered by an authenticated user. **Recommendations** For NETGEAR D6220 version 1.0.0.51 and earlier, update to version 1.0.0.52 or later. For NETGEAR D6400 version 1.0.0.85 and earlier, update to version 1.0.0.86 or later. For NETGEAR D7000v2 version 1.0.0.52 and earlier, update to version 1.0.0.53 or later. For NETGEAR D8500 version 1.0.3.43 and earlier, update to version 1.0.3.44 or later. For NETGEAR DGN2200v4 version 1.0.0.109 and earlier, update to version 1.0.0.110 or later. For NETGEAR DGND2200Bv4 version 1.0.0.108 and earlier, update to version 1.0.0.109 or later. For NETGEAR R6250 version 1.0.4.33 and earlier, update to version 1.0.4.34 or later. For NETGEAR R6300v2 version 1.0.4.31 and earlier, update to version 1.0.4.32 or later. For NETGEAR R6400 version 1.0.1.45 and earlier, update to version 1.0.1.46 or later. For NETGEAR R6400v2 version 1.0.2.61 and earlier, update to version 1.0.2.62 or later. For NETGEAR R6700 version 1.0.2.5 and earlier, update to version 1.0.2.6 or later. For NETGEAR R6900 version 1.0.2.3 and earlier, update to version 1.0.2.4 or later. For NETGEAR R6900P version 1.3.1.63 and earlier, update to version 1.3.1.64 or later. For NETGEAR R7000 version 1.0.9.59 and earlier, update to version 1.0.9.60 or later. For NETGEAR R7000P version 1.3.1.63 and earlier, update to version 1.3.1.64 or later. For NETGEAR R7100LG version 1.0.0.51 and earlier, update to version 1.0.0.52 or later. For NETGEAR R7300DST version 1.0.0.69 and earlier, update to version 1.0.0.70 or later. For NETGEAR R7900 version 1.0.3.7 and earlier, update to version 1.0.3.8 or later. For NETGEAR R7900P version 1.4.1.29 and earlier, update to version 1.4.1.30 or later. For NETGEAR R8000 version 1.0.4.27 and earlier, update to version 1.0.4.28 or later. For NETGEAR R8000P version 1.4.1.29 and earlier, update to version 1.4.1.30 or later. For NETGEAR R8300 version 1.0.2.127 and earlier, update to version 1.0.2.128 or later. For NETGEAR R8500 version 1.0.2.127 and earlier, update to version 1.0.2.128 or later. For NETGEAR WNDR3400v3 version 1.0.1.23 and earlier, update to version 1.0.1.24 or later. For NETGEAR WNR3500Lv2 version 1.2.0.55 and earlier, update to version 1.2.0.56 or later.