Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to the device software and functionality.
History

Tue, 11 Aug 2026 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Netgear
Netgear rax20
Netgear rax41
Netgear rax41v2
Netgear rax42
Netgear rax42v2
Netgear rax43
Netgear rax43v2
Netgear rax45
Netgear rax49s
Netgear rax50
Netgear rax50v2
Netgear rax54s
Netgear rax54sv2
Vendors & Products Netgear
Netgear rax20
Netgear rax41
Netgear rax41v2
Netgear rax42
Netgear rax42v2
Netgear rax43
Netgear rax43v2
Netgear rax45
Netgear rax49s
Netgear rax50
Netgear rax50v2
Netgear rax54s
Netgear rax54sv2

Tue, 11 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Description Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to the device software and functionality.
Title Some NETGEAR Nighthawk devices allow administrators to tamper with the device
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 4.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:L/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published: 2026-08-11T15:06:10.227Z

Updated: 2026-08-11T19:43:13.697Z

Reserved: 2026-06-09T02:46:46.338Z

Link: CVE-2026-11737

cve-icon Vulnrichment

Updated: 2026-08-11T19:43:08.170Z

cve-icon NVD

Status : Received

Published: 2026-08-11T16:17:27.917

Modified: 2026-08-11T20:17:25.090

Link: CVE-2026-11737

cve-icon Redhat

No data.