Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
History

Tue, 11 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Description Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
Title Insufficient input validation in certain NETGEAR Nighthawk routers allows administrators to tamper with the device.
First Time appeared Netgear
Netgear r7000
Netgear raxe500
Netgear rs700
Weaknesses CWE-20
CPEs cpe:2.3:a:netgear:r7000:*:*:*:*:*:*:*:*
cpe:2.3:a:netgear:raxe500:*:*:*:*:*:*:*:*
cpe:2.3:a:netgear:rs700:*:*:*:*:*:*:*:*
Vendors & Products Netgear
Netgear r7000
Netgear raxe500
Netgear rs700
References
Metrics cvssV4_0

{'score': 4.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:L/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-08-11T15:06:16.318Z

Reserved: 2026-06-09T02:46:47.287Z

Link: CVE-2026-11738

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-11T16:17:28.120

Modified: 2026-08-11T16:17:28.120

Link: CVE-2026-11738

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.