Insufficient input validation vulnerability exists in certain NETGEAR RAX Models
5Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 1.2
probabilidad de explotación
—
explotación observada
noninguna fuente lo reporta
An insufficient input validation vulnerability in the listed NETGEAR RAX series models allows a network-adjacent attacker having network access (such as WiFi credentials) to crash the router's management UI. There is no confidentiality or integrity impact. A crash of the router's management UI does not impact the availability of the router's core services like WiFi network.
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/AU:Y/R:A/V:D/RE:L/U:Amber
Referencias
https://kb.netgear.com/000070912/September-2026-NETGEAR-Security-Advisoryhttps://www.netgear.com/support/product/rax30https://www.netgear.com/support/product/rax35https://www.netgear.com/support/product/rax38https://www.netgear.com/support/product/rax40https://www.netgear.com/support/product/raxe300