Your review has been sent successfully

NETGEAR Alert

3076
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

28 December, 2022

● High

2022-5405

All

Description:

NETGEAR has released security update to address several vulnerabilities in the following products:

  • Insight iOS App fixed in firmware version 6.8.2.5
  • Routers and WiFi Systems
    • RBK852 fixed in firmware version 3.2.17.12
    • RBR850 fixed in firmware version 3.2.17.12
    • RBS850 fixed in firmware version 3.2.17.12
    • RAX200 fixed in firmware version 1.0.4.120
    • RAX75 fixed in firmware version 1.0.4.120
    • RAX80 fixed in firmware version 1.0.4.120
    • R7960P fixed in firmware version 1.4.4.94
    • R8000P fixed in firmware version 1.4.4.94
    • EAX20 fixed in firmware version 1.0.0.58
    • R6400 fixed in firmware version 1.0.1.70
    • R8000 fixed in firmware version 1.0.4.74
    • R7850 fixed in firmware version 1.0.4.74
    • R7000P fixed in firmware version 1.3.3.140
    • R6400v2 fixed in firmware version 1.0.4.118
    • XR1000 fixed in firmware version 1.0.0.58
    • MK62 fixed in firmware version 1.0.6.116
    • MR60 fixed in firmware version 1.0.6.116
    • MS60 fixed in firmware version 1.0.6.116
    • R7000 fixed in firmware version 1.0.11.126
    • RS400 fixed in firmware version 1.5.1.80
    • R7900 fixed in firmware version 1.0.4.46
    • DGN2200v4 fixed in firmware version 1.0.0.126
    • LAX20 fixed in firmware version 1.1.6.34
    • RBK752 fixed in firmware version 3.2.17.12
    • RBR750 fixed in firmware version 3.2.17.12
    • RBS750 fixed in firmware version 3.2.17.12
    • MK83 fixed in firmware version 1.1.3.6
    • MR80 fixed in firmware version 1.1.3.6
    • MS80 fixed in firmware version 1.1.3.6
    • RAX45 fixed in firmware version 1.0.3.96
    • RAX50 fixed in firmware version 1.0.3.96
    • RAX43 fixed in firmware version 1.0.3.96
    • RAX40v2 fixed in firmware version 1.0.3.96
    • RAX35v2 fixed in firmware version 1.0.3.96
    • LAX20 fixed in firmware version 1.1.6.28
    • RAX15 fixed in firmware version 1.0.3.96
    • RAX20 fixed in firmware version 1.0.3.96
    • CBR750 fixed in firmware version 4.6.3.6
    • CBR40 fixed in firmware version 2.5.0.24
    • R8000P fixed in firmware version 1.4.2.84
    • R7960P fixed in firmware version 1.4.2.84
    • R7000 fixed in firmware version 1.0.11.116
    • EAX80 fixed in firmware version 1.0.1.64
    • R8000 fixed in firmware version 1.0.4.68
    • R7900 fixed in firmware version 1.0.4.38
    • R6400v2 fixed in firmware version 1.0.4.122
    • RAX200 fixed in firmware version 1.0.6.138
    • RAX75 fixed in firmware version 1.0.6.138
    • RAX80 fixed in firmware version 1.0.6.138
    • R7000P fixed in firmware version 1.3.3.152

  • CAX30 fixed in firmware version 1.4.11.2

Threats:

An attacker could exploit these vulnerabilities by doing the following:

  • Sensitive Information Disclosure
  • Post-authentication command injection
  • Buffer Overflow
  • Authentication Bypass
Best practice and Recommendations:

The CERT team encourages users to review NETGEAR security advisory and apply the necessary updates:

Last updated at 28 December, 2022

Rate the content

rate-icon
up icon