CVE-2026-0413
4.3
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow more
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: a2826606-91e7-4eb6-899e-8484bd4575d5 (Secondary)
Description
A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
Affected (14)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 12.1.2.1 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbe370 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 10.5.20.10 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbe770 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr750 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr840 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr850 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbr860 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbre950 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbre960 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs750 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs840 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs850 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbs860 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbse950 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 7.2.8.5 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rbse960 | All versions |
References (15)
Source: a2826606-91e7-4eb6-899e-8484bd4575d5
Vendor Advisory
Timeline
No history available yet.