HIGH · 8.0

CVE-2026-9212

Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain c...

Vulnerability Description

Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain configurations.

CVSS Score

8.0

HIGH

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
NetgearLbr1020 Firmware< 2.6.4.60
NetgearLbr1020-
NetgearLbr20 Firmware< 2.7.6.8
NetgearLbr20-
NetgearR6700Ax Firmware-
NetgearR6700Ax-
NetgearR7800 Firmware< 1.0.4.96
NetgearR7800-
NetgearR9000 Firmware< 1.0.6.46
NetgearR9000-
NetgearRax10 Firmware< 1.0.5.50
NetgearRax10-
NetgearRax120 Firmware< 1.2.10.56
NetgearRax120-
NetgearRax36S Firmware< 1.0.5.50
NetgearRax36S-
NetgearRax70 Firmware< 1.0.19.172
NetgearRax70-
NetgearRax78 Firmware< 1.0.19.172
NetgearRax78-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2026-9212?

CVE-2026-9212 is a vulnerability with a CVSS score of 8.0 (HIGH). Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain c...

How severe is CVE-2026-9212?

CVE-2026-9212 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2026-9212?

Check the references section above for vendor advisories and patch information. Affected products include: Netgear Lbr1020 Firmware, Netgear Lbr1020, Netgear Lbr20 Firmware, Netgear Lbr20, Netgear R6700Ax Firmware.