CVE Tools

R7000P

89 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for R7000P, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

R7000P CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
R7000P CVEs per month
MonthCVEs
2024-100
2024-1127
2024-121
2025-010
2025-020
2025-030
2025-040
2025-050
2025-060
2025-070
2025-080
2025-090
2025-100
2025-110
2025-121
2026-010
2026-020
2026-030
2026-040
2026-050
2026-062
2026-070
2026-080
2026-090

Severity

How the 89 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical2629%
  • High2326%
  • Medium3843%
  • Low22%

Latest CVEs

The 15 most recently published vulnerabilities affecting R7000P.

  1. CVE-2026-0417Insufficient input validation in certain NETGEAR routers4.5
  2. CVE-2026-9210Certain NETGEAR routers allow authenticated administrators to gain unintended control of the router4.5
  3. CVE-2025-12945Improper input validation in NETGEAR Nighthawk router R7000P2.4
  4. CVE-2024-12988Netgear R6900P/R7000P HTTP Header sub_16C4C buffer overflow7.3
  5. CVE-2024-51021Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a command injection vulnerability via the wan_gateway parameter at genie_fix2.cgi. This vulnerability al...8.0
  6. CVE-2024-51020Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the apn parameter at usbISP_detail_edit.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cr...5.7
  7. CVE-2024-51011Netgear XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 was discovered to contain a stack overflow via the pppoe_localip parameter at pppoe.cgi. This vulnerability allows attackers to ca...5.7
  8. CVE-2024-51019Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pppoe_localnetmask parameter at pppoe.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a ...5.7
  9. CVE-2024-51018Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the pptp_user_netmask parameter at pptp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cr...5.7
  10. CVE-2024-51017Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the l2tp_user_netmask parameter at l2tp.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a cr...5.7
  11. CVE-2024-51010Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to contain a command injection vulnerability in the component ap_mode.cgi via the apmode_gateway...8.0
  12. CVE-2024-51006Netgear R8500 v1.0.2.160 was discovered to contain a stack overflow via the ipv6_static_ip parameter in the ipv6_tunnel function. This vulnerability allows attackers to cause a Denial of Service (D...5.7
  13. CVE-2024-51015Netgear R7000P v1.3.3.154 was discovered to contain a command injection vulnerability via the device_name2 parameter at operation_mode.cgi. This vulnerability allows attackers to execute arbitrary ...5.7
  14. CVE-2024-51013Netgear R7000P v1.3.3.154 was discovered to contain a stack overflow via the RADIUSAddr%d_wla parameter at wireless.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a...5.7
  15. CVE-2024-51003Netgear R8500 v1.0.2.160, XR300 v1.0.3.78, R7000P v1.3.3.154, and R6400 v2 1.0.4.128 were discovered to multiple stack overflow vulnerabilities in the component ap_mode.cgi via the apmode_dns1_pri ...5.7

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store