A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper traffic between the router and the Internet, to execute code on the device.

Project Subscriptions

No data.

Advisories

No advisories yet.

Fixes

Solution

If automatic updates are enabled, your device may already have this security update applied. If not, please check the firmware version and install the latest update. Fixed in: ProductFixed VersionMR70 V1.0.4.48 https://www.netgear.com/support/product/mr70/ MS70 V1.0.4.48 https://www.netgear.com/support/product/ms70/ RAXE500 V1.2.14.114 https://www.netgear.com/support/product/raxe500/ XR1000 V1.0.2.86 https://www.netgear.com/support/product/xr1000/


Workaround

No workaround given by the vendor.

History

Tue, 09 Jun 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Netgear
Netgear mr70
Netgear ms70
Netgear raxe500
Netgear xr1000
Vendors & Products Netgear
Netgear mr70
Netgear ms70
Netgear raxe500
Netgear xr1000

Tue, 09 Jun 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 09 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Description A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper traffic between the router and the Internet, to execute code on the device.
Title Insufficient input validation in certain NETGEAR routers
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:U'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-06-09T18:40:02.890Z

Reserved: 2026-05-21T17:29:06.017Z

Link: CVE-2026-9213

cve-icon Vulnrichment

Updated: 2026-06-09T17:34:39.677Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-06-09T17:17:51.733

Modified: 2026-06-09T19:38:32.463

Link: CVE-2026-9213

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-09T20:20:28Z

Weaknesses