CVE-2026-0414

Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:rbe970_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rbe970:-:*:*:*:*:*:*:*

History

23 Jul 2026, 08:10

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de validación de entrada insuficiente en los modelos NETGEAR listados permite a los administradores autenticados conectados a la red local realizar modificaciones no autorizadas del software y la funcionalidad del router.

18 Jun 2026, 17:56

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.5
References () https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory - () https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory - Vendor Advisory
References () https://www.netgear.com/support/product/rbe970/ - () https://www.netgear.com/support/product/rbe970/ - Product
CPE cpe:2.3:o:netgear:rbe970_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rbe970:-:*:*:*:*:*:*:*
First Time Netgear rbe970 Firmware
Netgear
Netgear rbe970

10 Jun 2026, 14:16

Type Values Removed Values Added
References
  • () https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory -

09 Jun 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-09 17:16

Updated : 2026-07-23 08:10


NVD link : CVE-2026-0414

Mitre link : CVE-2026-0414

CVE.ORG link : CVE-2026-0414


JSON object : View

Products Affected

netgear

  • rbe970_firmware
  • rbe970
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')