4.9

CVE-2026-11736

Stack-based buffer overflow vulnerability in some NETGEAR Nighthawk routers

A stack-based buffer overflow vulnerability affects certain NETGEAR models allowing an authenticated admin user to make unauthorized modification to router software and functionality.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netgear ≫ Rax20 Firmware Version -
   Netgear ≫ Rax20 Version -
Netgear ≫ Rax35v2 Firmware Version < 1.0.16.132
   Netgear ≫ Rax35v2 Version -
Netgear ≫ Rax41 Firmware Version -
   Netgear ≫ Rax41 Version -
Netgear ≫ Rax41v2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax41v2 Version -
Netgear ≫ Rax42 Firmware Version -
   Netgear ≫ Rax42 Version -
Netgear ≫ Rax42v2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax42v2 Version -
Netgear ≫ Rax43 Firmware Version < 1.0.16.132
   Netgear ≫ Rax43 Version -
Netgear ≫ Rax43v2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax43v2 Version -
Netgear ≫ Rax45 Firmware Version -
   Netgear ≫ Rax45 Version -
Netgear ≫ Rax49s Firmware Version < 1.1.4.28
   Netgear ≫ Rax49s Version -
Netgear ≫ Rax50 Firmware Version < 1.0.16.132
   Netgear ≫ Rax50 Version -
Netgear ≫ Rax50s Firmware Version -
   Netgear ≫ Rax50s Version -
Netgear ≫ Rax50v2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax50v2 Version -
Netgear ≫ Rax54sv2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax54sv2 Version -
Netgear ≫ Rax54v2 Firmware Version < 1.1.4.28
   Netgear ≫ Rax54v2 Version -
Netgear ≫ Raxe450 Firmware Version -
   Netgear ≫ Raxe450 Version -
Netgear ≫ Raxe500 Firmware Version < 1.2.14.114
   Netgear ≫ Raxe500 Version -
Netgear ≫ Xr1000 Firmware Version < 1.1.0.22
   Netgear ≫ Xr1000 Version -
Netgear ≫ Xr1000v2 Firmware Version < 1.1.0.22
   Netgear ≫ Xr1000v2 Version -
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.31% 0.238
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.9 1.2 3.6
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
NETGEAR 1.9 0 0
CVSS:4.0/AV:A/AC:H/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:L/U:Amber
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

https://www.netgear.com/support/product/rax20/
Product
https://www.netgear.com/support/product/rax35v2/
Product
https://www.netgear.com/support/product/rax41/
Product
https://www.netgear.com/support/product/rax41v2/
Product
https://www.netgear.com/support/product/rax42v2/
Product
https://www.netgear.com/support/product/rax42/
Product
https://www.netgear.com/support/product/rax43/
Product
https://www.netgear.com/support/product/rax43v2/
Product
https://www.netgear.com/support/product/rax45/
Product
https://www.netgear.com/support/product/raxe450/
Product
https://www.netgear.com/support/product/rax50s/
Product
https://www.netgear.com/support/product/rax50/
Product
https://www.netgear.com/support/product/rax54sv2/
Product
https://www.netgear.com/support/product/xr1000/
Product
https://www.netgear.com/support/product/xr1000v2/
Product
https://www.netgear.com/support/product/rax50v2/
Product
https://www.netgear.com/support/product/rax49s/
Product
https://www.netgear.com/support/product/raxe500/
Product
https://kb.netgear.com/000070887/August-2026-NETGEAR-Security-Advisory
Vendor Advisory