Product:

Dgnd3700_firmware

(Netgear)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 3
Date Id Summary Products Score Patch Annotated
2020-04-28 CVE-2016-11059 Certain NETGEAR devices are affected by password exposure. This affects AC1450 before 2017-01-06, C6300 before 2017-01-06, D500 before 2017-01-06, D1500 before 2017-01-06, D3600 before 2017-01-06, D6000 before 2017-01-06, D6100 before 2017-01-06, D6200 before 2017-01-06, D6200B before 2017-01-06, D6300B before 2017-01-06, D6300 before 2017-01-06, DGN1000v3 before 2017-01-06, DGN2200v1 before 2017-01-06, DGN2200v3 before 2017-01-06, DGN2200V4 before 2017-01-06, DGN2200Bv3 before 2017-01-06,... Ac1450_firmware, C6300_firmware, D1500_firmware, D3600_firmware, D500_firmware, D6000_firmware, D6100_firmware, D6200_firmware, D6200b_firmware, D6300_firmware, D6300b_firmware, Dgn1000_firmware, Dgn2200_firmware, Dgn2200b_firmware, Dgnd3700_firmware, Dgnd3700b_firmware, Jnr1010_firmware, Jnr3300_firmware, Jr6100_firmware, Jr6150_firmware, Jwnr2000_firmware, R2000_firmware, R6050_firmware, R6100_firmware, R6200_firmware, R6220_firmware, R6250_firmware, R6300_firmware, R6700_firmware, R7000_firmware, R7500_firmware, R7900_firmware, R8000_firmware, Wgr614_firmware, Wndr3400_firmware, Wndr3700_firmware, Wndr4300_firmware, Wndr4500_firmware, Wnr1000_firmware, Wnr2000_firmware, Wnr2200_firmware, Wnr2500_firmware, Wnr3500l_firmware N/A
2019-10-09 CVE-2019-17373 Certain NETGEAR devices allow unauthenticated access to critical .cgi and .htm pages via a substring ending with .jpg, such as by appending ?x=1.jpg to a URL. This affects MBR1515, MBR1516, DGN2200, DGN2200M, DGND3700, WNR2000v2, WNDR3300, WNDR3400, WNR3500, and WNR834Bv2. Dgn2200_firmware, Dgn2200m_firmware, Dgnd3700_firmware, Mbr1515_firmware, Mbr1516_firmware, Wndr3300_firmware, Wndr3400_firmware, Wnr2000v2_firmware, Wnr3500_firmware, Wnr834bv2_firmware N/A
2018-07-24 CVE-2016-5649 A vulnerability is in the 'BSW_cxttongr.htm' page of the Netgear DGN2200, version DGN2200-V1.0.0.50_7.0.50, and DGND3700, version DGND3700-V1.0.0.17_1.0.17, which can allow a remote attacker to access this page without any authentication. When processed, it exposes the admin password in clear text before it gets redirected to absw_vfysucc.cgia. An attacker can use this password to gain administrator access to the targeted router's web interface. Dgn2200_firmware, Dgnd3700_firmware 9.8