CVE-2026-0415
Insufficient input validation vulnerability in certain Orbi routers
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U
Productos afectados
NETGEAR · RBE970NETGEAR · RBR750NETGEAR · RBR840NETGEAR · RBR850NETGEAR · RBR860NETGEAR · RBRE950NETGEAR · RBRE960NETGEAR · RBS750NETGEAR · RBS840NETGEAR · RBS850NETGEAR · RBS860NETGEAR · RBSE950NETGEAR · RBSE960¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisoryhttps://www.netgear.com/support/product/rbe970/https://www.netgear.com/support/product/rbr750/https://www.netgear.com/support/product/rbr840/https://www.netgear.com/support/product/rbr850/https://www.netgear.com/support/product/rbr860/https://www.netgear.com/support/product/rbre950/https://www.netgear.com/support/product/rbre960/https://www.netgear.com/support/product/rbs750/https://www.netgear.com/support/product/rbs840/https://www.netgear.com/support/product/rbs850/https://www.netgear.com/support/product/rbs860/