4.5
CVE-2026-0417
- EPSS 0.23%
- Veröffentlicht 09.06.2026 15:50:49
- Zuletzt bearbeitet 23.07.2026 08:10:00
- CVE-Watchlists
- Unerledigt
Insufficient input validation in certain NETGEAR routers
Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated administrators connected to the local network to tamper with the router's integrity.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netgear ≫ Mr60 Firmware Version < 1.1.7.132
Netgear ≫ Mr70 Firmware Version < 1.0.3.28
Netgear ≫ Mr80 Firmware Version < 1.1.7.14
Netgear ≫ Ms60 Firmware Version < 1.1.7.132
Netgear ≫ Ms70 Firmware Version < 1.0.3.28
Netgear ≫ Ms80 Firmware Version < 1.1.7.14
Netgear ≫ R6400v2 Firmware Version < 1.0.4.128
Netgear ≫ R6700v3 Firmware Version < 1.0.4.128
Netgear ≫ R6900p Firmware Version < 1.3.3.152
Netgear ≫ R7000 Firmware Version < 1.0.11.216
Netgear ≫ R7000p Firmware Version < 1.3.3.152
Netgear ≫ R7960p Firmware Version < 1.4.4.92
Netgear ≫ R8000p Firmware Version < 1.4.4.92
Netgear ≫ R8500 Firmware Version-
Netgear ≫ Rax20 Firmware Version < 1.0.18.144
Netgear ≫ Rax35v2 Firmware Version < 1.0.16.132
Netgear ≫ Rax40v2 Firmware Version < 1.0.12.118
Netgear ≫ Rax41 Firmware Version < 1.0.12.118
Netgear ≫ Rax42 Firmware Version < 1.0.12.118
Netgear ≫ Rax43 Firmware Version < 1.0.12.120
Netgear ≫ Rax45 Firmware Version < 1.0.12.118
Netgear ≫ Rax48 Firmware Version < 1.0.12.118
Netgear ≫ Rax50 Firmware Version < 1.0.12.120
Netgear ≫ Rax50s Firmware Version < 1.0.12.120
Netgear ≫ Raxe450 Firmware Version < 1.0.10.86
Netgear ≫ Raxe500 Firmware Version < 1.0.10.86
Netgear ≫ Xr1000 Firmware Version < 1.0.0.68
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.23% | 0.135 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.5 | 0.9 | 3.6 |
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
|
| NETGEAR | 4.3 | 0 | 0 |
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:D/RE:L/U:Amber
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
https://www.netgear.com/support/product/rax20/
https://www.netgear.com/support/product/r7000/
https://www.netgear.com/support/product/rax35v2/
https://www.netgear.com/support/product/rax41/
https://www.netgear.com/support/product/rax42/
https://www.netgear.com/support/product/rax43/
https://www.netgear.com/support/product/rax45/
https://www.netgear.com/support/product/raxe450/
https://www.netgear.com/support/product/rax50s/
https://www.netgear.com/support/product/rax50/
https://www.netgear.com/support/product/xr1000/
https://www.netgear.com/support/product/raxe500/
https://www.netgear.com/support/product/mr70/
https://www.netgear.com/support/product/mr80/
https://www.netgear.com/support/product/mr60/
https://www.netgear.com/support/product/ms60/
https://www.netgear.com/support/product/ms80/
https://www.netgear.com/support/product/r6400v2/
https://www.netgear.com/support/product/ms70/
https://www.netgear.com/support/product/r6700v3/
https://www.netgear.com/support/product/r6900p/
https://www.netgear.com/support/product/r8000p/
https://www.netgear.com/support/product/r8500/
https://www.netgear.com/support/product/rax40v2/
https://www.netgear.com/support/product/r7960p/
https://www.netgear.com/support/product/r7000p/
https://www.netgear.com/support/product/rax48/
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory