Known Vulnerabilities for D8500 by Netgear
Listed below are 10 of the newest known vulnerabilities associated with "D8500" by "Netgear".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Netgear D8500
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-38539 | Certain NETGEAR devices are affected by privilege escalation. This affects D8500 before 1.0.3.44, R6400v2 before 1.0.2.66, R6... | 8.8 - HIGH | 2021-08-11 | 2022-07-12 |
| CVE-2021-38534 | Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 before 1... | 4.8 - MEDIUM | 2021-08-11 | 2021-08-19 |
| CVE-2021-38528 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D8500 before 1.0.3.58,... | 9.8 - CRITICAL | 2021-08-11 | 2021-08-18 |
| CVE-2021-38516 | Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48, D64... | 9.8 - CRITICAL | 2021-08-11 | 2022-07-12 |
| CVE-2021-38514 | Certain NETGEAR devices are affected by authentication bypass. This affects D3600 before 1.0.0.72, D6000 before 1.0.0.72, D61... | 2.7 - LOW | 2021-08-11 | 2022-07-12 |
| CVE-2021-27239 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6400 and... | 8.8 - HIGH | 2021-03-29 | 2021-04-02 |
| CVE-2020-35800 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects AC2100 before 1.2.0.72, AC... | 9.4 - CRITICAL | 2020-12-30 | 2021-01-04 |
| CVE-2020-35796 | Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects CBR40 before 2.5.0.10,... | 9.8 - CRITICAL | 2020-12-30 | 2021-01-04 |
| CVE-2020-11770 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.52, D6400... | 8.8 - HIGH | 2020-04-15 | 2021-07-21 |
| CVE-2019-17372 | Certain NETGEAR devices allow remote attackers to disable all authentication requirements by visiting genieDisableLanChanged.... | 8.1 - HIGH | 2019-10-09 | 2019-10-18 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Netgear | D8500 | - | All | All | All |