Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
Advisories

No advisories yet.

Fixes

Solution

Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in: ProductFixed VersionEX3700 AC750 WiFi Range Extender Essentials Edition V1.0.0.100 https://www.netgear.com/support/product/ex3700/ EX3800 (EoS) AC750 WiFi Range Extender Essentials Edition V1.0.0.100 https://www.netgear.com/support/product/ex3800/ EX6120 AC1200 Dual Band WiFi Range Extender V1.0.0.72 https://www.netgear.com/support/product/ex6120/ EX6130 AC1200 WiFi Range Extender V1.0.0.54 https://www.netgear.com/support/product/ex6130/ MR60 Nighthawk Mesh WiFi 6 Router V1.1.7.132 https://www.netgear.com/support/product/mr60/ MR70 Nighthawk Mesh WiFi 6 Router V1.0.3.28 https://www.netgear.com/support/product/mr70/ MR80 Nighthawk Tri-band Mesh WiFi 6 Router V1.1.7.14 https://www.netgear.com/support/product/mr80/ MS60 Nighthawk Mesh WiFi 6 Add-on Satellite V1.1.7.132 https://www.netgear.com/support/product/ms60/ MS70 Nighthawk Mesh WiFi 6 Add-on Satellite V1.0.3.28 https://www.netgear.com/support/product/ms70/ MS80 Nighthawk Tri-band Mesh WiFi 6 Add-on Satellite V1.1.7.14 https://www.netgear.com/support/product/ms80/ R6400v2 (EoS) AC1750 Smart WiFi Router 802.11ac Dual Band Gigabit V1.0.4.128 https://www.netgear.com/support/product/r6400v2/ R6700v3 (EoS) Nighthawk AC1750 Smart WiFi Dual Band Gigabit Router V1.0.4.128 https://www.netgear.com/support/product/r6700v3/ R6900P (EoS) Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router V1.3.3.152 https://www.netgear.com/support/product/r6900p/ R7000 (EoS) Nighthawk AC1900 Smart WiFi Dual Band Gigabit Router V1.0.11.216 https://www.netgear.com/support/product/r7000/ R7000P (EoS) Nighthawk AC2300 Smart WiFi Dual Band Gigabit Router V1.3.3.152 https://www.netgear.com/support/product/r7000p/ R7960P (EoS) Nighthawk X6S AC3600 Tri-Band WiFi Router V1.4.4.92 https://www.netgear.com/support/product/r7960p/ R8000P (EoS) Nighthawk X6S AC4000 Tri Band WiFi Router V1.4.4.92 https://www.netgear.com/support/product/r8000p/ R8500 (EoS) Nighthawk X8 AC5300 Smart WiFi RouterEOSRAX20 (EoS) 4-Stream AX1800 WiFi 6 Router V1.0.18.144 https://www.netgear.com/support/product/rax20/ RAX35v2 Nighthawk AX4 4-Stream AX3000 WiFi 6 Router V1.0.12.118 https://www.netgear.com/support/product/rax35v2/ RAX40v2 Nighthawk AX4 4-Stream WiFi Router V1.0.12.118 https://www.netgear.com/support/product/rax40v2/ RAX41 (EoS) Nighthawk AX5 5-Stream AX3600 WiFi Router V1.0.12.118 https://www.netgear.com/support/product/rax41/ RAX42 (EoS) Nighthawk AX5 5-Stream AX4200 WiFi Router V1.0.12.118 https://www.netgear.com/support/product/rax42/ RAX43 (EoS) Nighthawk AX5 5-Stream AX4200 WiFi Router V1.0.12.120 https://www.netgear.com/support/product/rax43/ RAX45 (EoS) Nighthawk AX6 6-Stream AX4300 WiFi Router V1.0.12.118 https://www.netgear.com/support/product/rax45/ RAX48 Nighthawk AX6 6-Stream AX5200 WiFi 6 Router V1.0.12.118 https://www.netgear.com/support/product/rax48/ RAX50 Nighthawk AX6 6-Stream AX5400 WiFi 6 Router V1.0.12.120 https://www.netgear.com/support/product/rax50/ RAX50S Nighthawk AX6 6-Stream AX5400 WiFi 6 Router V1.0.12.120 https://www.netgear.com/support/product/rax50s/ RAXE450 Nighthawk AXE10000 Tri-Band WiFi 6E Router V1.0.10.86 https://www.netgear.com/support/product/raxe450/ RAXE500 Nighthawk AX12 12-Stream AXE11000 Tri-Band WiFi 6E Router V1.0.10.86 https://www.netgear.com/support/product/raxe500/ XR1000 Nighthawk WiFi 6 Pro Gaming Router V1.0.0.68 https://www.netgear.com/support/product/xr1000/ Models marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.


Workaround

No workaround given by the vendor.

References
Link Providers
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory cve-icon cve-icon
https://www.netgear.com/support/product/ex3700/ cve-icon cve-icon
https://www.netgear.com/support/product/ex3800/ cve-icon cve-icon
https://www.netgear.com/support/product/ex6120/ cve-icon cve-icon
https://www.netgear.com/support/product/ex6130/ cve-icon cve-icon
https://www.netgear.com/support/product/mr60/ cve-icon cve-icon
https://www.netgear.com/support/product/mr70/ cve-icon cve-icon
https://www.netgear.com/support/product/mr80/ cve-icon cve-icon
https://www.netgear.com/support/product/ms60/ cve-icon cve-icon
https://www.netgear.com/support/product/ms70/ cve-icon cve-icon
https://www.netgear.com/support/product/ms80/ cve-icon cve-icon
https://www.netgear.com/support/product/r6400v2/ cve-icon cve-icon
https://www.netgear.com/support/product/r6700v3/ cve-icon cve-icon
https://www.netgear.com/support/product/r6900p/ cve-icon cve-icon
https://www.netgear.com/support/product/r7000/ cve-icon cve-icon
https://www.netgear.com/support/product/r7000p/ cve-icon cve-icon
https://www.netgear.com/support/product/r7960p/ cve-icon cve-icon
https://www.netgear.com/support/product/r8000p/ cve-icon cve-icon
https://www.netgear.com/support/product/r8500/ cve-icon cve-icon
https://www.netgear.com/support/product/rax20/ cve-icon cve-icon
https://www.netgear.com/support/product/rax35v2/ cve-icon cve-icon
https://www.netgear.com/support/product/rax40v2/ cve-icon cve-icon
https://www.netgear.com/support/product/rax41/ cve-icon cve-icon
https://www.netgear.com/support/product/rax42/ cve-icon cve-icon
https://www.netgear.com/support/product/rax43/ cve-icon cve-icon
https://www.netgear.com/support/product/rax45/ cve-icon cve-icon
https://www.netgear.com/support/product/rax48/ cve-icon cve-icon
https://www.netgear.com/support/product/rax50/ cve-icon cve-icon
https://www.netgear.com/support/product/rax50s/ cve-icon cve-icon
https://www.netgear.com/support/product/raxe450/ cve-icon cve-icon
https://www.netgear.com/support/product/raxe500/ cve-icon cve-icon
https://www.netgear.com/support/product/xr1000/ cve-icon cve-icon
History

Wed, 10 Jun 2026 19:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:h:netgear:ex3700:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ex3800:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ex6120:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ex6130:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:mr60:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:mr70:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:mr80:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ms60:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ms70:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ms80:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r6400v2:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r6700v3:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r6900p:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r7000:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r7000p:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r7960p:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r8000p:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r8500:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax20:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax35v2:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax40v2:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax41:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax42:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax43:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax45:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax48:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax50:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax50s:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:raxe450:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:raxe500:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:xr1000:*:*:*:*:*:*:*:*
References

Tue, 09 Jun 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Netgear
Netgear ex3700
Netgear ex3800
Netgear ex6120
Netgear ex6130
Netgear mr60
Netgear mr70
Netgear mr80
Netgear ms60
Netgear ms70
Netgear ms80
Netgear r6400v2
Netgear r6700v3
Netgear r6900p
Netgear r7000
Netgear r7000p
Netgear r7960p
Netgear r8000p
Netgear r8500
Netgear rax20
Netgear rax35v2
Netgear rax40v2
Netgear rax41
Netgear rax42
Netgear rax43
Netgear rax45
Netgear rax48
Netgear rax50
Netgear rax50s
Netgear raxe450
Netgear raxe500
Netgear xr1000
Vendors & Products Netgear
Netgear ex3700
Netgear ex3800
Netgear ex6120
Netgear ex6130
Netgear mr60
Netgear mr70
Netgear mr80
Netgear ms60
Netgear ms70
Netgear ms80
Netgear r6400v2
Netgear r6700v3
Netgear r6900p
Netgear r7000
Netgear r7000p
Netgear r7960p
Netgear r8000p
Netgear r8500
Netgear rax20
Netgear rax35v2
Netgear rax40v2
Netgear rax41
Netgear rax42
Netgear rax43
Netgear rax45
Netgear rax48
Netgear rax50
Netgear rax50s
Netgear raxe450
Netgear raxe500
Netgear xr1000

Tue, 09 Jun 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 09 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Description Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
Title Certain NETGEAR routers allow authenticated administrators to gain unintended control of the router
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 4.9, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/V:D/RE:L/U:Amber'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-06-11T05:38:03.646Z

Reserved: 2026-05-21T17:29:00.866Z

Link: CVE-2026-9210

cve-icon Vulnrichment

Updated: 2026-06-09T18:05:09.391Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-09T17:17:51.120

Modified: 2026-06-10T19:16:38.787

Link: CVE-2026-9210

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-09T20:20:23Z

Weaknesses