Ex8000
Vendor:
First CVE: Apr 16, 2020 · Active for 6 years
31
Total CVEs
More Total CVEs than 96% of tracked products
6.2
Avg CVEs / Year
Higher CVE frequency than 91% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 70% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ex8000 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 16, 2020
6 years ago
Most Recent CVE
Dec 23, 2025
216 days ago
CVE Severity & Scoring
Ex800031 CVEs
32%
35%
29%
All CVEs352,727 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (3.2%)
Network14 (45.2%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network16 (51.6%)
Attack Complexity
Low31 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None30 (96.8%)
Unknown0 (0.0%)
Required1 (3.2%)
Privileges Required
Low1 (3.2%)
High9 (29.0%)
None21 (67.7%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (31 CVEs).
31 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-50526CRITICAL Netgear EX8000 V1.0.0.126 was discovered to contain a command injection vulnerability via the switch_status function. | Dec 23, 2025 | 9.8 | 34 | NO | NO |
CVE-2021-45619CRITICAL Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects EX6200v2 before 1.0.1.86, EX6250 before 1.0.0.134, EX7700 before 1.0.0.216, E | Dec 26, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-38527CRITICAL Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5.0.14, EX6100v2 before 1.0.1.98, EX6150v2 before 1.0.1.98, EX | Aug 11, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-27861HIGH This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Orbi 2.5.1.16 routers. Authentication is not required to exploit | Feb 12, 2021 | 8.8 | 29 | NO | NO |
CVE-2020-35799CRITICAL Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.78, D6200 before 1.1.00 | Dec 30, 2020 | 9.8 | 29 | NO | NO |
CVE-2018-21153CRITICAL Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects D7800 before 1.0.1.34, DM200 before 1.0.0.50, EX2700 before 1.0.1.32, EX6100v | Apr 27, 2020 | 9.8 | 29 | NO | NO |
CVE-2021-27255HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Authentication is not required to exploit | Mar 5, 2021 | 8.8 | 28 | NO | NO |
CVE-2019-20730CRITICAL Certain NETGEAR devices are affected by SQL injection. This affects D3600 before 1.0.0.68, D6000 before 1.0.0.68, D6200 before 1.1.00.28, D6220 before 1.0.0.40, D6400 before 1.0.0. | Apr 16, 2020 | 9.8 | 28 | NO | NO |
CVE-2022-27641HIGH This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not require | Mar 29, 2023 | 8.8 | 27 | NO | NO |
CVE-2021-27256HIGH This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R7800 firmware version 1.0.2.76. Although authentication is requ | Mar 5, 2021 | 8.8 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (31 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (31 CVEs).
Media Mentions
Signals from CVEs in this product scope (31 CVEs).
Top CNAs Publishing CVEs For Ex8000
Top CWEs
Versions
No cataloged versions.