CVE-2026-0417
Insufficient input validation in certain NETGEAR routers
Insufficient input validation vulnerability in the listed NETGEAR devices allows
authenticated administrators connected to the local network to tamper with
the router's integrity.
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/V:D/RE:L/U:Amber
Affected products
NETGEAR · MR60NETGEAR · MR70NETGEAR · MR80NETGEAR · MS60NETGEAR · MS70NETGEAR · MS80NETGEAR · R6400v2NETGEAR · R6700v3NETGEAR · R6900PNETGEAR · R7000NETGEAR · R7000PNETGEAR · R7960PNETGEAR · R8000PNETGEAR · R8500NETGEAR · RAX20NETGEAR · RAX35v2NETGEAR · RAX40v2NETGEAR · RAX41NETGEAR · RAX42NETGEAR · RAX43NETGEAR · RAX45NETGEAR · RAX48NETGEAR · RAX50NETGEAR · RAX50SNETGEAR · RAXE450NETGEAR · RAXE500NETGEAR · XR1000Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisoryhttps://www.netgear.com/support/product/mr60/https://www.netgear.com/support/product/mr70/https://www.netgear.com/support/product/mr80/https://www.netgear.com/support/product/ms60/https://www.netgear.com/support/product/ms70/https://www.netgear.com/support/product/ms80/https://www.netgear.com/support/product/r6400v2/https://www.netgear.com/support/product/r6700v3/https://www.netgear.com/support/product/r6900p/https://www.netgear.com/support/product/r7000/https://www.netgear.com/support/product/r7000p/