Vulnerability Description
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Ex3700 Firmware | < 1.0.0.100 |
| Netgear | Ex3700 | - |
| Netgear | Ex3800 Firmware | < 1.0.0.100 |
| Netgear | Ex3800 | - |
| Netgear | Ex6120 Firmware | < 1.0.0.72 |
| Netgear | Ex6120 | - |
| Netgear | Ex6130 Firmware | < 1.0.0.54 |
| Netgear | Ex6130 | - |
| Netgear | Mr60 Firmware | < 1.1.7.132 |
| Netgear | Mr60 | - |
| Netgear | Mr70 Firmware | < 1.0.3.28 |
| Netgear | Mr70 | - |
| Netgear | Mr80 Firmware | < 1.1.7.14 |
| Netgear | Mr80 | - |
| Netgear | Ms60 Firmware | < 1.1.7.132 |
| Netgear | Ms60 | - |
| Netgear | Ms70 Firmware | < 1.0.3.28 |
| Netgear | Ms70 | - |
| Netgear | Ms80 Firmware | < 1.1.7.14 |
| Netgear | Ms80 | - |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-AdvisoryVendor Advisory
- https://www.netgear.com/support/product/ex3700/Product
- https://www.netgear.com/support/product/ex3800/Product
- https://www.netgear.com/support/product/ex6120/Product
- https://www.netgear.com/support/product/ex6130/Product
- https://www.netgear.com/support/product/mr60/Product
- https://www.netgear.com/support/product/mr70/Product
- https://www.netgear.com/support/product/mr80/Product
- https://www.netgear.com/support/product/ms60/Product
- https://www.netgear.com/support/product/ms70/Product
- https://www.netgear.com/support/product/ms80/Product
- https://www.netgear.com/support/product/r6400v2/Product
- https://www.netgear.com/support/product/r6700v3/Product
- https://www.netgear.com/support/product/r6900p/Product
- https://www.netgear.com/support/product/r7000/Product
FAQ
What is CVE-2026-9210?
CVE-2026-9210 is a vulnerability with a CVSS score of 4.5 (MEDIUM). Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and fun...
How severe is CVE-2026-9210?
CVE-2026-9210 has been rated MEDIUM with a CVSS base score of 4.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-9210?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear Ex3700 Firmware, Netgear Ex3700, Netgear Ex3800 Firmware, Netgear Ex3800, Netgear Ex6120 Firmware.