An insufficient input validation vulnerability in certain NETGEAR router models as listed allows an authenticated administrator with local network access to submit crafted input that bypasses intended management interface restrictions, resulting in unauthorized modification of protected router software or functionality.
References
| Link | Resource |
|---|---|
| https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory | Vendor Advisory |
| https://www.netgear.com/support/product/raxe450/ | Product |
| https://www.netgear.com/support/product/raxe500/ | Product |
Configurations
History
23 Jul 2026, 08:10
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
18 Jun 2026, 13:53
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:netgear:raxe500:-:*:*:*:*:*:*:* cpe:2.3:o:netgear:raxe450_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:netgear:raxe500_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:netgear:raxe450:-:*:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.5 |
| CWE | NVD-CWE-noinfo | |
| First Time |
Netgear raxe500
Netgear raxe500 Firmware Netgear raxe450 Netgear Netgear raxe450 Firmware |
|
| References | () https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory - Vendor Advisory | |
| References | () https://www.netgear.com/support/product/raxe450/ - Product | |
| References | () https://www.netgear.com/support/product/raxe500/ - Product |
11 Jun 2026, 07:16
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (en) An insufficient input validation vulnerability in certain NETGEAR router models as listed allows an authenticated administrator with local network access to submit crafted input that bypasses intended management interface restrictions, resulting in unauthorized modification of protected router software or functionality. |
10 Jun 2026, 16:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
09 Jun 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-09 17:16
Updated : 2026-07-23 08:10
NVD link : CVE-2026-0416
Mitre link : CVE-2026-0416
CVE.ORG link : CVE-2026-0416
JSON object : View
Products Affected
netgear
- raxe500_firmware
- raxe450_firmware
- raxe500
- raxe450
CWE
