CVE-2026-9215
- EPSS 0.12%
- Veröffentlicht 08.09.2026 17:06:47
- Zuletzt bearbeitet 11.09.2026 21:20:24
A cross site request forgery (CSRF) vulnerability in the listed NETGEAR models allows an attacker who can leverage social engineering techniques on a router administrator to tamper with router configuration and disrupt router operations with active a...
CVE-2026-11736
- EPSS 0.31%
- Veröffentlicht 11.08.2026 15:06:19
- Zuletzt bearbeitet 09.09.2026 02:58:40
A stack-based buffer overflow vulnerability affects certain NETGEAR models allowing an authenticated admin user to make unauthorized modification to router software and functionality.
CVE-2026-11735
- EPSS 0.31%
- Veröffentlicht 11.08.2026 15:06:17
- Zuletzt bearbeitet 09.09.2026 02:58:25
A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.
CVE-2026-11739
- EPSS 1.05%
- Veröffentlicht 11.08.2026 15:06:14
- Zuletzt bearbeitet 09.09.2026 02:59:22
A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker in the middle) to compromise the confidentiality and integr...
CVE-2026-0418
- EPSS 0.25%
- Veröffentlicht 09.06.2026 15:50:50
- Zuletzt bearbeitet 23.07.2026 08:10:00
Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network to tamper with the system.
CVE-2026-0417
- EPSS 0.23%
- Veröffentlicht 09.06.2026 15:50:49
- Zuletzt bearbeitet 23.07.2026 08:10:00
Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated administrators connected to the local network to tamper with the router's integrity.
CVE-2026-9210
- EPSS 0.22%
- Veröffentlicht 09.06.2026 15:50:48
- Zuletzt bearbeitet 23.07.2026 08:10:00
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
CVE-2026-9213
- EPSS 0.4%
- Veröffentlicht 09.06.2026 15:50:46
- Zuletzt bearbeitet 23.07.2026 08:10:00
A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper with traffic between the router and the Internet, to execute code on the device.
CVE-2026-0410
- EPSS 0.22%
- Veröffentlicht 09.06.2026 15:41:47
- Zuletzt bearbeitet 23.07.2026 08:10:00
Authenticated administrators connected to the local network can gain elevated access to the router and make unauthorized changes to router software and functionality.
CVE-2024-35517
- EPSS 14.54%
- Veröffentlicht 11.10.2024 22:15:03
- Zuletzt bearbeitet 13.03.2025 17:15:31
Netgear XR1000 v1.0.0.64 is vulnerable to command injection in usb_remote_smb_conf.cgi via the share_name parameter.