Xr1000
This hub aggregates every CVE we track for Xr1000, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
34
CVEs tracked
10
Critical
9
High
0
In CISA KEV
Severity distribution
MEDIUM14CRITICAL10HIGH9
Monthly trend
1
0
0
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
5
1
3
1
2024-102026-09
Latest CVEs
The 15 most recently published vulnerabilities affecting Xr1000.
- CVE-2026-9215A CSRF vulnerability exists in certain NETGEAR XR series devices6.7
- CVE-2026-11736Stack-based buffer overflow vulnerability in some NETGEAR Nighthawk routers4.9
- CVE-2026-11735Stack-based buffer overflow vulnerability in some NETGEAR Nighthawk models4.9
- CVE-2026-11739Command injection vulnerability in some NETGEAR Nighthawk devices6.4
- CVE-2026-62657Certificate validation vulnerability in NETGEAR Gaming Router and certain Nighthawk models
- CVE-2026-0418Certain NETGEAR devices allow administrators to tamper with system4.5
- CVE-2026-0417Insufficient input validation in certain NETGEAR routers4.5
- CVE-2026-9210Certain NETGEAR routers allow authenticated administrators to gain unintended control of the router4.5
- CVE-2026-9213Insufficient input validation in certain NETGEAR routers8.1
- CVE-2026-0410Insufficient input validation in certain NETGEAR routers4.5
- CVE-2025-25246NETGEAR XR1000 before 1.0.0.74, XR1000v2 before 1.1.0.22, and XR500 before 2.3.2.134 allow remote code execution by unauthenticated users.8.1
- CVE-2024-35517Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter.8.4
- BDU:2024-05871Уязвимость микропрограммного обеспечения Wi-Fi роутеров NETGEAR XR1000, связанная с недостатками контроля доступа, позволяющая нарушителю оказать воздействие на конфиденциальность и целостность защищаемой информации7.1
- BDU:2024-05876Уязвимость микропрограммного обеспечения Wi-Fi роутеров NETGEAR XR1000, связанная с недостатками процедуры аутентификации, позволяющая нарушителю обойти существующие ограничения безопасности7.8
- BDU:2022-04392Уязвимость микропрограммного обеспечения Wi-Fi роутеров RAXE500, RAXE450, XR1000, MK83, MK62, R6400v2, R7850, R6700v3, R7000P, R6900P, R8000, RS400, XR300, DC112A, R6400, WNDR3400v3, R7000, MR60, MR80, MS60, MS80, вызванная переполнением буфера на основе стека, позволяющая нарушителю выполнить произвольный код8.1
Product normalization is registry-driven with AI assist and human review. How it works