CVE-2026-0411
4.2
Vector
CVSS:4.0/AV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow more
CVSS:4.0/AV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: a2826606-91e7-4eb6-899e-8484bd4575d5 (Secondary)
Description
An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could allow a user connected to your network to gain administrator access to the Orbi router. The listed NETGEAR models are affected by this vulnerability.
Orbi WiFi Systems without satellite devices are not impacted by this issue.
Affected (5)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.13.2.1 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbe970 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.4.2.2 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr350 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.3.8.11 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr760 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.4.2.2 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs350 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 6.3.8.11 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs760 | All versions |
References (6)
Source: a2826606-91e7-4eb6-899e-8484bd4575d5
Vendor Advisory
Timeline
No history available yet.