CVE-2022-40619
- EPSS 0.87%
- Veröffentlicht 28.01.2026 00:00:00
- Zuletzt bearbeitet 29.01.2026 19:16:09
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the LAN interface of affected devices. This interface is vulnerable to unauthenticated arbitrary command injection through the funjsq_a...
CVE-2022-40620
- EPSS 0.05%
- Veröffentlicht 28.01.2026 00:00:00
- Zuletzt bearbeitet 29.01.2026 19:16:09
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS certificates when downloading update packages through its auto-update mechanism. An attacker (suitably positioned on the network) co...
CVE-2025-12942
- EPSS 0.05%
- Veröffentlicht 11.11.2025 16:17:37
- Zuletzt bearbeitet 08.12.2025 14:26:54
Improper Input Validation vulnerability in NETGEAR R6260 and NETGEAR R6850 allows unauthenticated attackers connected to LAN with ability to perform MiTM attacks and control over DNS Server to perform command execution.This issue affects R6260: throu...