← back
CVE-2026-0416

Improper input validation in certain NETGEAR routers allows unauthorized modification of protected router functionality

CVSS 4.3 MEDIUMEPSS 0.2%CWE-20
An insufficient input validation vulnerability in certain NETGEAR router models as listed allows an authenticated administrator with local network access to submit crafted input that bypasses intended management interface restrictions, resulting in unauthorized modification of protected router software or functionality.
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/V:D/RE:L/U:Amber

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →