CVE-2026-9210
- EPSS 0.22%
- Veröffentlicht 09.06.2026 15:50:48
- Zuletzt bearbeitet 23.07.2026 08:10:00
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
CVE-2026-0410
- EPSS 0.22%
- Veröffentlicht 09.06.2026 15:41:47
- Zuletzt bearbeitet 23.07.2026 08:10:00
Authenticated administrators connected to the local network can gain elevated access to the router and make unauthorized changes to router software and functionality.
CVE-2025-12946
- EPSS 0.29%
- Veröffentlicht 09.12.2025 17:15:48
- Zuletzt bearbeitet 07.10.2026 11:10:00
A vulnerability in the speedtest feature of affected NETGEAR Nighthawk routers, caused by improper input validation, can allow attackers on the router's WAN side, using attacker-in-the-middle techniques (MiTM) to manipulate DNS responses and execute ...
CVE-2024-57235
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:42:10
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the iface parameter in the vif_enable function.
CVE-2024-57229
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:40:47
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the devname parameter in the reset_wifi function.
CVE-2024-57230
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:41:09
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pin_wps function.
CVE-2024-57231
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:41:31
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wps function.
CVE-2024-57232
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:41:38
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.
CVE-2024-57233
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:41:55
NETGEAR RAX5 (AX1600 WiFi Router) v1.0.2.26 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.
CVE-2024-57234
- EPSS 1.15%
- Veröffentlicht 05.05.2025 00:00:00
- Zuletzt bearbeitet 07.05.2025 16:42:00
NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.