Insufficient authentication and input validation in certain NETGEAR products

Summary

CVECVE-2026-9212
StatePUBLISHED
AssignerNETGEAR
Source PriorityCVE Program / NVD first with legacy fallback
Published2026-06-09 17:17:51 UTC
Updated2026-06-10 16:17:18 UTC
DescriptionInsufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting product's confidentiality or change certain configurations.

Risk And Classification

Primary CVSS: v4.0 5.6 MEDIUM from a2826606-91e7-4eb6-899e-8484bd4575d5

CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:H/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Problem Types: CWE-20 | CWE-306 | CWE-306 CWE-306 Missing authentication for critical function | CWE-20 CWE-20 Improper input validation


VersionSourceTypeScoreSeverityVector
4.0a2826606-91e7-4eb6-899e-8484bd4575d5Secondary5.6MEDIUMCVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:H/SI:N/SA:N/E:U/C...
4.0CNACVSS5.6MEDIUMCVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:H/SI:N/SA:N/E:U

CVSS v4.0 Breakdown

Attack Vector
Adjacent
Attack Complexity
Low
Attack Requirements
None
Privileges Required
Low
User Interaction
None
Confidentiality
High
Integrity
Low
Availability
None
Sub Conf.
High
Sub Integrity
None
Sub Availability
None

CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:N/SC:H/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Vendor Declared Affected Products

SourceVendorProductVersionPlatforms
CNA NETGEAR LBR1020 affected V2.6.4.60 custom Not specified
CNA NETGEAR LBR20 affected V2.7.6.8 custom Not specified
CNA NETGEAR R6700AX affected * custom Not specified
CNA NETGEAR R7800 affected V1.0.4.96 custom Not specified
CNA NETGEAR R9000 affected V1.0.6.46 custom Not specified
CNA NETGEAR RAX10 affected V1.0.5.50 custom Not specified
CNA NETGEAR RAX10v2 affected V1.0.5.50 custom Not specified
CNA NETGEAR RAX120 affected V1.2.10.56 custom Not specified
CNA NETGEAR RAX120v1 affected V1.2.10.56 custom Not specified
CNA NETGEAR RAX120v2 affected V1.2.10.56 custom Not specified
CNA NETGEAR RAX36S affected V1.0.5.50 custom Not specified
CNA NETGEAR RAX70 affected V1.0.19.172 custom Not specified
CNA NETGEAR RAX78 affected V1.0.19.172 custom Not specified
CNA NETGEAR RBR10 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBR20 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBR350 affected V4.4.2.1 custom Not specified
CNA NETGEAR RBR40 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBR50 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBS10 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBS20 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBS350 affected V4.4.2.1 custom Not specified
CNA NETGEAR RBS40 affected 2.7.6.6 custom Not specified
CNA NETGEAR RBS50 affected 2.7.6.6 custom Not specified
CNA NETGEAR XR450 affected V2.3.3.136 custom Not specified
CNA NETGEAR XR500 affected v2.3.3.136 custom Not specified

References

ReferenceSourceLinkTags
www.netgear.com/support/product/rbs20 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbr50 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory a2826606-91e7-4eb6-899e-8484bd4575d5 kb.netgear.com
www.netgear.com/support/product/rbs10 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/r9000 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax10 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbs40 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbr350 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/lbr20 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax70 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/xr500 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax120 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/r7800 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbs350 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax36s a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax78 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbr40 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rax120v2 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbr10 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbr20 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/r6700ax a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/xr450 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/rbs50 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
www.netgear.com/support/product/lbr1020 a2826606-91e7-4eb6-899e-8484bd4575d5 www.netgear.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Vendor Comments And Credit

Discovery Credit

CNA: ZeroZenx Labs (en)

Additional Advisory Data

Solutions

CNA: Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in: ProductFixed VersionLBR1020 (EoS) Orbi 4GX AC1200 Dual-Band Mesh WiFi Router V2.6.4.60 https://www.netgear.com/support/product/lbr1020/ LBR20 Orbi LTE Tri-band WiFi Router V2.7.6.8 https://www.netgear.com/support/product/lbr20/ R6700AX (EoS) 4-Stream AX1800 WiFi 6 RouterEOSR7800 (EoS) Nighthawk X4S AC2600 Smart WiFi Router V1.0.4.96 https://www.netgear.com/support/product/r7800/ R9000 (EoS) Nighthawk X10 AD7200 Smart WiFi Router V1.0.6.46 https://www.netgear.com/support/product/r9000/ RAX10 4-Stream AX1800 WiFi 6 Router V1.0.5.50 https://www.netgear.com/support/product/rax10/ RAX10v2V1.0.5.50RAX120 (EoS) Nighthawk AX12 12-Stream WiFi Router V1.2.10.56 https://www.netgear.com/support/product/rax120/ RAX120v1 (EoS)V1.2.10.56RAX120v2 Nighthawk AX12 12-Stream AX6000 WiFi Router V1.2.10.56 https://www.netgear.com/support/product/rax120v2/ RAX36S Nighthawk AX4 4-Stream AX3000 WiFi Router V1.0.5.50 https://www.netgear.com/support/product/rax36s/ RAX70 Nighthawk Tri-band AX8 8-Stream AX6600 WiFi 6 Router V1.0.19.172 https://www.netgear.com/support/product/rax70/ RAX78 Nighthawk AX8 8-Stream AX6200 Tri-Band WiFi Router V1.0.19.172 https://www.netgear.com/support/product/rax78/ RBR10 (EoS) Orbi AC1200 Dual-Band Mesh WiFi RouterEOSRBR20 (EoS) Orbi AC2200 Tri-band WiFi RouterEOSRBR350 Orbi AX1800 WiFi 6 Dual-band Mesh Router V4.4.2.1 https://www.netgear.com/support/product/rbr350/ RBR40 (EoS) Orbi AC2200 Tri-band WiFi RouterEOSRBR50 (EoS) Orbi AC3000 Tri-band WiFi RouterEOSRBS10 (EoS) Orbi AC1200 Dual-Band Mesh WiFi Add-on SatelliteEOSRBS20 (EoS) Orbi AC2200 Tri-band WiFi Add-on SatelliteEOSRBS350 Orbi AX1800 WiFi 6 Dual-band Mesh Add-on Satellite V4.4.2.1 https://www.netgear.com/support/product/rbs350/ RBS40 (EoS) Orbi AC2200 Tri-band WiFi Add-on SatelliteEOSRBS50 (EoS) Orbi AC3000 Tri-band WiFi Add-on SatelliteEOSXR450 (EoS) Nighthawk Pro Gaming Router V2.3.3.136 https://www.netgear.com/support/product/xr450/ XR500 (EoS) Nighthawk Pro Gaming Router v2.3.3.136 https://www.netgear.com/support/product/xr500/ Models marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.

© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report