An information disclosure vulnerability in the NETGEAR Orbi satellites could allow a user connected to your network to gain administrator access to the Orbi router. The listed NETGEAR models are affected by this vulnerability.


Orbi WiFi Systems without satellite devices are not impacted by this issue.

Project Subscriptions

Vendors Products
Netgear Subscribe
Advisories

No advisories yet.

Fixes

Solution

NETGEAR strongly recommends that you install the latest firmware as soon as possible. Issue fixed in: ProductFixed VersionRBE970 Orbi Quad-band Mesh WiFi 7 Add-on Satellite 6.3.8.11 https://www.netgear.com/support/product/rbe970/ RBR350 Orbi AX1800 WiFi 6 Dual-band Mesh Router V4.4.2.2 https://www.netgear.com/support/product/rbr350/ RBR760 Orbi Tri-Band Mesh WiFi 6 Router V6.3.8.11 https://www.netgear.com/support/product/rbr760/ RBS350 Orbi AX1800 WiFi 6 Dual-band Mesh Add-on Satellite V4.4.2.2 https://www.netgear.com/support/product/rbs350/ RBS760 Orbi Tri-Band Mesh WiFi 6 Add-on Satellite V6.3.8.11 https://www.netgear.com/support/product/rbs760/


Workaround

No workaround given by the vendor.

History

Wed, 10 Jun 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 10 Jun 2026 13:30:00 +0000

Type Values Removed Values Added
References

Tue, 09 Jun 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Netgear
Netgear rbe97x
Netgear rbr350
Netgear rbr760
Netgear rbs350
Vendors & Products Netgear
Netgear rbe97x
Netgear rbr350
Netgear rbr760
Netgear rbs350

Tue, 09 Jun 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 09 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Description An information disclosure vulnerability in the NETGEAR Orbi satellites could allow a user connected to your network to gain administrator access to the Orbi router. The listed NETGEAR models are affected by this vulnerability. Orbi WiFi Systems without satellite devices are not impacted by this issue.
Title A Sensitive Information Disclosure Vulnerability in NETGEAR Orbi Satellites
Weaknesses CWE-200
References
Metrics cvssV4_0

{'score': 4.2, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:P/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:U'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-06-10T13:33:16.470Z

Reserved: 2025-12-03T04:16:18.239Z

Link: CVE-2026-0411

cve-icon Vulnrichment

Updated: 2026-06-09T17:01:44.473Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-09T17:16:58.453

Modified: 2026-06-10T14:16:30.617

Link: CVE-2026-0411

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-09T20:20:15Z

Weaknesses