Description
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
Published: 2026-08-11
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized Device Modification
Action: Apply Patch
AI Analysis

Impact

The vulnerability is an insufficient input validation flaw that allows an authenticated administrator who is connected to the local network to make unauthorized changes to the router’s software and functionality. An attacker who obtains administrative credentials can thus alter configuration settings or the firmware behaviour without permission, potentially compromising the device’s intended operation, bypassing security controls, or enabling further attacks within the local network.

Affected Systems

Affected brands include NETGEAR’s Nighthawk R7000, RAXE500, and RS700 routers. The R7000 model is End‑of‑Support and will not receive updates; the RAXE500 requires firmware V1.2.14.114 or newer, and the RS700 requires firmware V1.0.7.66 or newer. All devices should be updated to these or later versions if available.

Risk and Exploitability

The CVSS score of 4.3 indicates a moderate impact. The EPSS score is unavailable, and the vulnerability is not listed in CISA KEV. Attack requires local network access and valid administrative credentials; therefore it is most likely exploited by insiders or compromised internal hosts. Once authenticated, the attacker can modify device configuration or firmware without detection, effectively degrading the router’s security or functionality.

Generated by OpenCVE AI on August 11, 2026 at 22:55 UTC.

Remediation

Vendor Solution

Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in: ProductFixed VersionR7000 (EoS) Nighthawk AC1900 Smart WiFi Dual Band Gigabit RouterEOSRAXE500 Nighthawk AX12 12-Stream AXE11000 Tri-Band WiFi 6E Router V1.2.14.114 https://www.netgear.com/support/product/raxe500/ RS700 Nighthawk BE19000 WiFi 7 Tri-Band Router V1.0.7.66 https://www.netgear.com/support/product/rs700/ Models marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.


OpenCVE Recommended Actions

  • Update the firmware on all affected devices: for the RAXE500 update to at least V1.2.14.114 and for the RS700 to at least V1.0.7.66; for the R7000 consider retiring the device as it is End‑of‑Support.
  • Enable automatic firmware updates on the routers so future patches are applied automatically.
  • Limit local network access to authorized administrators by enforcing strong passwords, disabling remote management interfaces, and implementing network segmentation to reduce the attack surface.

Generated by OpenCVE AI on August 11, 2026 at 22:55 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 09 Sep 2026 03:15:00 +0000

Type Values Removed Values Added
First Time appeared Netgear be9300
Netgear be9300 Firmware
Netgear mr60
Netgear mr60 Firmware
Netgear ms60
Netgear ms60 Firmware
Netgear r6700ax
Netgear r6700ax Firmware
Netgear rax10
Netgear rax10 Firmware
Netgear rax120
Netgear rax120 Firmware
Netgear rax120v2
Netgear rax120v2 Firmware
Netgear rax20
Netgear rax20 Firmware
Netgear rax28
Netgear rax28 Firmware
Netgear rax29
Netgear rax29 Firmware
Netgear rax30
Netgear rax30 Firmware
Netgear rax36s
Netgear rax36s Firmware
Netgear rax43
Netgear rax43 Firmware
Netgear rax45
Netgear rax45 Firmware
Netgear rax50
Netgear rax50 Firmware
Netgear rax70
Netgear rax70 Firmware
Netgear rbr760
Netgear rbr760 Firmware
Netgear rbs760
Netgear rbs760 Firmware
Netgear rs100
Netgear rs100 Firmware
Netgear rs200
Netgear rs200 Firmware
Netgear rs280
Netgear rs280 Firmware
Netgear rs300
Netgear rs300 Firmware
Netgear rs500
Netgear rs500 Firmware
Netgear rs600
Netgear rs600 Firmware
Netgear rs70
Netgear rs70 Firmware
Netgear rs90
Netgear rs90 Firmware
CPEs cpe:2.3:h:netgear:be9300:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:mr60:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:ms60:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r6700ax:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax10:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax120:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax120v2:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax20:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax28:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax29:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax30:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax36s:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax43:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax45:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax50:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rax70:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rbr760:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rbs760:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs100:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs200:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs280:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs300:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs500:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs600:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs70:-:*:*:*:*:*:*:*
cpe:2.3:h:netgear:rs90:-:*:*:*:*:*:*:*
cpe:2.3:o:netgear:be9300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:mr60_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:ms60_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:r6700ax_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax10_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax120_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax120v2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax20_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax28_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax29_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax30_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax36s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax43_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax45_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax50_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rax70_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rbr760_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rbs760_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs100_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs200_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs280_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs300_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs600_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs70_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:netgear:rs90_firmware:*:*:*:*:*:*:*:*
Vendors & Products Netgear be9300
Netgear be9300 Firmware
Netgear mr60
Netgear mr60 Firmware
Netgear ms60
Netgear ms60 Firmware
Netgear r6700ax
Netgear r6700ax Firmware
Netgear rax10
Netgear rax10 Firmware
Netgear rax120
Netgear rax120 Firmware
Netgear rax120v2
Netgear rax120v2 Firmware
Netgear rax20
Netgear rax20 Firmware
Netgear rax28
Netgear rax28 Firmware
Netgear rax29
Netgear rax29 Firmware
Netgear rax30
Netgear rax30 Firmware
Netgear rax36s
Netgear rax36s Firmware
Netgear rax43
Netgear rax43 Firmware
Netgear rax45
Netgear rax45 Firmware
Netgear rax50
Netgear rax50 Firmware
Netgear rax70
Netgear rax70 Firmware
Netgear rbr760
Netgear rbr760 Firmware
Netgear rbs760
Netgear rbs760 Firmware
Netgear rs100
Netgear rs100 Firmware
Netgear rs200
Netgear rs200 Firmware
Netgear rs280
Netgear rs280 Firmware
Netgear rs300
Netgear rs300 Firmware
Netgear rs500
Netgear rs500 Firmware
Netgear rs600
Netgear rs600 Firmware
Netgear rs70
Netgear rs70 Firmware
Netgear rs90
Netgear rs90 Firmware
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N'}


Wed, 12 Aug 2026 07:45:00 +0000


Tue, 11 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 11 Aug 2026 15:30:00 +0000

Type Values Removed Values Added
Description Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.
Title Insufficient input validation in certain NETGEAR Nighthawk routers allows administrators to tamper with the device.
First Time appeared Netgear
Netgear r7000
Netgear raxe500
Netgear rs700
Weaknesses CWE-20
CPEs cpe:2.3:a:netgear:r7000:*:*:*:*:*:*:*:*
cpe:2.3:a:netgear:raxe500:*:*:*:*:*:*:*:*
cpe:2.3:a:netgear:rs700:*:*:*:*:*:*:*:*
Vendors & Products Netgear
Netgear r7000
Netgear raxe500
Netgear rs700
References
Metrics cvssV4_0

{'score': 4.3, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:L/U:Amber'}


Subscriptions

Netgear Be9300 Be9300 Firmware Mr60 Mr60 Firmware Ms60 Ms60 Firmware R6700ax R6700ax Firmware R7000 Rax10 Rax10 Firmware Rax120 Rax120 Firmware Rax120v2 Rax120v2 Firmware Rax20 Rax20 Firmware Rax28 Rax28 Firmware Rax29 Rax29 Firmware Rax30 Rax30 Firmware Rax36s Rax36s Firmware Rax43 Rax43 Firmware Rax45 Rax45 Firmware Rax50 Rax50 Firmware Rax70 Rax70 Firmware Raxe500 Rbr760 Rbr760 Firmware Rbs760 Rbs760 Firmware Rs100 Rs100 Firmware Rs200 Rs200 Firmware Rs280 Rs280 Firmware Rs300 Rs300 Firmware Rs500 Rs500 Firmware Rs600 Rs600 Firmware Rs70 Rs700 Rs70 Firmware Rs90 Rs90 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: NETGEAR

Published:

Updated: 2026-08-12T07:41:53.324Z

Reserved: 2026-06-09T02:46:47.287Z

Link: CVE-2026-11738

cve-icon Vulnrichment

Updated: 2026-08-11T19:42:24.631Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-11T16:17:28.120

Modified: 2026-09-09T02:59:45.560

Link: CVE-2026-11738

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-11T23:15:12Z

Weaknesses
  • CWE-20

    Improper Input Validation