Description
A buffer overflow vulnerability in the listed NETGEAR models allows a device administrator to temporarily interrupt the normal operation of the affected device.
Published: 2026-08-11
Score: 1.1 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A buffer overflow in the specified NETGEAR routers permits a device administrator to cause a temporary interruption of the device’s normal operation. The primary impact is a denial‑of‑service condition, with no evidence in the description of confidentiality or integrity compromise. Based on the wording, the overflow would be triggered by a privileged user or a service running with administrative rights on the device.

Affected Systems

Affected models include NETGEAR RAX41, RAX41v2, RAX42, RAX42v2, RAX43, RAX43v2, RAX49S, RAX50, RAX50v2, RAX54S, and RAX54Sv2. All impacted devices can be upgraded to firmware version V1.1.6.36, which contains the fix. Devices marked as End‑of‑Support (EoS) such as RAX41, RAX42, and RAX43 will not receive security updates and are recommended for retirement.

Risk and Exploitability

The CVSS score of 1.1 reflects very low severity, and no EPSS score is available, indicating that the exploitation probability is currently unquantified but considered low. The vulnerability is not listed in the CISA KEV catalog. Likely attacker scenarios involve a user with administrative access to the router management interface, potentially via a local network or a compromised management service.

Generated by OpenCVE AI on August 11, 2026 at 22:56 UTC.

Remediation

Vendor Solution

Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in: ProductFixed VersionRAX41 (EoS) Nighthawk AX5 5-Stream AX3600 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax41/ RAX41v2 Nighthawk AX5 5-Stream AX3600 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax41v2/ RAX42 (EoS) Nighthawk AX5 5-Stream AX4200 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax42/ RAX42v2 Nighthawk AX5 5-Stream AX4200 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax42v2/ RAX43 Nighthawk AX5 5-Stream AX4200 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax43/ RAX43v2 Nighthawk AX5 5-Stream AX4200 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax43v2/ RAX49S Nighthawk AX6 6-Stream AX5300 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax49s/ RAX50 Nighthawk AX6 6-Stream AX5400 WiFi 6 Router V1.1.6.36 https://www.netgear.com/support/product/rax50/ RAX50v2 Nighthawk AX6 6-Stream AX5400 WiFi 6 Router V1.1.6.36 https://www.netgear.com/support/product/rax50v2/ RAX54S Nighthawk AX6 6-Stream AX5400 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax54s/ RAX54Sv2 Nighthawk AX6 6-Stream AX5400 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax54sv2/ Models marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.


OpenCVE Recommended Actions

  • Upgrade firmware to version V1.1.6.36 for all affected NETGEAR routers
  • Replace or retire End‑of‑Support devices such as RAX41, RAX42, and RAX43
  • Restrict administrative access to trusted sources by configuring firewall rules and disabling remote management when not needed

Generated by OpenCVE AI on August 11, 2026 at 22:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 12 Aug 2026 07:45:00 +0000


Tue, 11 Aug 2026 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Netgear
Netgear rax41
Netgear rax41v2
Netgear rax42
Netgear rax42v2
Netgear rax43
Netgear rax43v2
Netgear rax49s
Netgear rax50
Netgear rax50v2
Netgear rax54s
Netgear rax54sv2
Vendors & Products Netgear
Netgear rax41
Netgear rax41v2
Netgear rax42
Netgear rax42v2
Netgear rax43
Netgear rax43v2
Netgear rax49s
Netgear rax50
Netgear rax50v2
Netgear rax54s
Netgear rax54sv2

Tue, 11 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Description A buffer overflow vulnerability in the listed NETGEAR models allows a device administrator to temporarily interrupt the normal operation of the affected device.
Title Buffer overflow vulnerability in some NETGEAR Nighthawk routers
Weaknesses CWE-121
References
Metrics cvssV4_0

{'score': 1.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:L/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-08-12T07:17:16.418Z

Reserved: 2026-06-09T02:46:42.319Z

Link: CVE-2026-11733

cve-icon Vulnrichment

Updated: 2026-08-11T19:42:54.790Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-11T16:17:26.917

Modified: 2026-08-28T21:16:15.740

Link: CVE-2026-11733

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T23:15:12Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow