Vulnerability Description
Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain configurations.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Netgear | Lbr1020 Firmware | < 2.6.4.60 |
| Netgear | Lbr1020 | - |
| Netgear | Lbr20 Firmware | < 2.7.6.8 |
| Netgear | Lbr20 | - |
| Netgear | R6700Ax Firmware | - |
| Netgear | R6700Ax | - |
| Netgear | R7800 Firmware | < 1.0.4.96 |
| Netgear | R7800 | - |
| Netgear | R9000 Firmware | < 1.0.6.46 |
| Netgear | R9000 | - |
| Netgear | Rax10 Firmware | < 1.0.5.50 |
| Netgear | Rax10 | - |
| Netgear | Rax120 Firmware | < 1.2.10.56 |
| Netgear | Rax120 | - |
| Netgear | Rax36S Firmware | < 1.0.5.50 |
| Netgear | Rax36S | - |
| Netgear | Rax70 Firmware | < 1.0.19.172 |
| Netgear | Rax70 | - |
| Netgear | Rax78 Firmware | < 1.0.19.172 |
| Netgear | Rax78 | - |
Related Weaknesses (CWE)
References
- https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-AdvisoryPatchVendor Advisory
- https://www.netgear.com/support/product/lbr1020/Product
- https://www.netgear.com/support/product/lbr20/Product
- https://www.netgear.com/support/product/r6700ax/Product
- https://www.netgear.com/support/product/r7800/Product
- https://www.netgear.com/support/product/r9000/Product
- https://www.netgear.com/support/product/rax10/Product
- https://www.netgear.com/support/product/rax120/Product
- https://www.netgear.com/support/product/rax120v2/Product
- https://www.netgear.com/support/product/rax36s/Product
- https://www.netgear.com/support/product/rax70/Product
- https://www.netgear.com/support/product/rax78/Product
- https://www.netgear.com/support/product/rbr10/Product
- https://www.netgear.com/support/product/rbr20/Product
- https://www.netgear.com/support/product/rbr350/Product
FAQ
What is CVE-2026-9212?
CVE-2026-9212 is a vulnerability with a CVSS score of 8.0 (HIGH). Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain c...
How severe is CVE-2026-9212?
CVE-2026-9212 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-9212?
Check the references section above for vendor advisories and patch information. Affected products include: Netgear Lbr1020 Firmware, Netgear Lbr1020, Netgear Lbr20 Firmware, Netgear Lbr20, Netgear R6700Ax Firmware.