CVE-2026-11737
4.3
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:L/U:AmberShow more
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:L/U:AmberShow less
Source: a2826606-91e7-4eb6-899e-8484bd4575d5 (Secondary)
Description
Insufficient input validation vulnerability in the listed
NETGEAR models allows authenticated administrators connected to the
local network to make unauthorized modification to the device software and
functionality.
Affected (13)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.18.144 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax20 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax41 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax41v2 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax42 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax42v2 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax43 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax43v2 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.0.17.142 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax45 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax49s | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax50 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax50v2 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax54s | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.1.6.36 |
| Running on/with | Platform Versions |
|---|---|
Netgear Rax54sv2 | All versions |
References (12)
Source: a2826606-91e7-4eb6-899e-8484bd4575d5
Vendor Advisory
Timeline
No history available yet.