Vulnerabilities
Vulnerable Software
Netgear:  Security Vulnerabilities
An insufficient input validation vulnerability in the listed NETGEAR RAX series models allows a network-adjacent attacker having network access (such as WiFi credentials) to crash the router's management UI. There is no confidentiality or integrity impact. A crash of the router's management UI does not impact the availability of the router's core services like WiFi network.
CVSS Score
1.2
EPSS Score
0.002
Published
2026-09-08
A cross site request forgery (CSRF) vulnerability in the listed NETGEAR models allows an attacker who can leverage social engineering techniques on a router administrator to tamper with router configuration and disrupt router operations with active assistance from the router administrator. There is no confidentiality impact due to this vulnerability.
CVSS Score
1.8
EPSS Score
0.001
Published
2026-09-08
Insufficient input validation vulnerability in the NETGEAR R7000 models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-08-11
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
CVSS Score
4.3
EPSS Score
0.003
Published
2026-08-11
A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker in the middle) to compromise the confidentiality and integrity of the affected device.
CVSS Score
4.9
EPSS Score
0.011
Published
2026-08-11
A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker-in-the-middle) to compromise the confidentiality and integrity of the affected device. This issue is limited to certain region-specific SKUs.
CVSS Score
4.9
EPSS Score
0.009
Published
2026-08-11
A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.
CVSS Score
1.1
EPSS Score
0.006
Published
2026-08-11
A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.
CVSS Score
1.9
EPSS Score
0.005
Published
2026-08-11
A stack-based buffer overflow vulnerability affects certain NETGEAR models allowing an authenticated admin user to make unauthorized modification to router software and functionality.
CVSS Score
1.9
EPSS Score
0.005
Published
2026-08-11
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to the device software and functionality.
CVSS Score
4.3
EPSS Score
0.002
Published
2026-08-11


Contact Us

Shodan ® - All rights reserved