TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2026-0404

HIGH
8.0

Beschreibung

An insufficient input validation vulnerability in NETGEAR Orbi devices' DHCPv6 functionality allows network adjacent attackers authenticated over WiFi or on LAN to execute OS command injections on the router. DHCPv6 is not enabled by default.

CVE Details

CVSS v3.1 Bewertung8.0
SchweregradHIGH
CVSS VektorCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
AngriffsvektorADJACENT_NETWORK
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht1/13/2026
Zuletzt geandert2/12/2026
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

netgear:rbr750netgear:rbr750_firmwarenetgear:rbr840netgear:rbr840_firmwarenetgear:rbr850netgear:rbr850_firmwarenetgear:rbr860netgear:rbr860_firmwarenetgear:rbre950netgear:rbre950_firmwarenetgear:rbre960netgear:rbre960_firmwarenetgear:rbs750netgear:rbs750_firmwarenetgear:rbs840netgear:rbs840_firmwarenetgear:rbs850netgear:rbs850_firmwarenetgear:rbs860netgear:rbs860_firmwarenetgear:rbse950netgear:rbse950_firmwarenetgear:rbse960netgear:rbse960_firmware

Schwachen (CWE)

CWE-20

Referenzen

https://www.netgear.com/support/product/rbr750(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr840(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr850(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr860(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbre950(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbre960(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs750(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs840(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs850(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs860(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbse950(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbse960(a2826606-91e7-4eb6-899e-8484bd4575d5)

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.