Netcomm manufactures a narrow line of small-business and consumer networking appliances, including routers and wireless gateways such as the NB1300 and NB16WV series, where vulnerability exposure centers on web-interface implementation. The durable signal across these products reflects recurrent application-layer weaknesses: cross-site scripting, cross-site request forgery, and improper authentication mechanisms that are typical of embedded web management interfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Netcomm over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-11645CRITICAL NetComm Wireless 4GT101W routers with Hardware: 0.01 / Software: V1.1.8.8 / Bootloader: 1.1.3 do not require authentication for logfile.html, status.html, or system_config.html. | Jul 28, 2017 | 9.8 | 24 | NO | NO |
CVE-2005-0895MEDIUM Netcomm 1300NB DSL Modem allows remote attackers to cause a denial of service (device hang) via a large number of ping packets. | May 2, 2005 | 5.0 | 23 | NO | YES |
CVE-2017-11646HIGH NetComm Wireless 4GT101W routers with Hardware: 0.01 / Software: V1.1.8.8 / Bootloader: 1.1.3 are vulnerable to CSRF attacks, as demonstrated by using administration.html to disabl | Jul 28, 2017 | 8.8 | 22 | NO | NO |
CVE-2017-11647MEDIUM NetComm Wireless 4GT101W routers with Hardware: 0.01 / Software: V1.1.8.8 / Bootloader: 1.1.3 are vulnerable to stored cross-site scripting attacks. Creating an SSID with an XSS pa | Jul 28, 2017 | 5.4 | 18 | NO | NO |
CVE-2017-5900MEDIUM Cross-site scripting (XSS) vulnerability in the NetComm NB16WV-02 router with firmware NB16WV_R0.09 allows remote authenticated users to inject arbitrary web script or HTML via the | Mar 29, 2017 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netcomm.
Media articles that mention a CVE ID that affects a product developed by Netcomm — matched by CVE ID, not by vendor name.