TROYANOSYVIRUS
Voltar para CVEs

CVE-2026-0404

HIGH
8.0

Descricao

An insufficient input validation vulnerability in NETGEAR Orbi devices' DHCPv6 functionality allows network adjacent attackers authenticated over WiFi or on LAN to execute OS command injections on the router. DHCPv6 is not enabled by default.

Detalhes CVE

Pontuacao CVSS v3.18.0
SeveridadeHIGH
Vetor CVSSCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vetor de ataqueADJACENT_NETWORK
ComplexidadeLOW
Privilegios necessariosLOW
Interacao do usuarioNONE
Publicado1/13/2026
Ultima modificacao2/12/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

netgear:rbr750netgear:rbr750_firmwarenetgear:rbr840netgear:rbr840_firmwarenetgear:rbr850netgear:rbr850_firmwarenetgear:rbr860netgear:rbr860_firmwarenetgear:rbre950netgear:rbre950_firmwarenetgear:rbre960netgear:rbre960_firmwarenetgear:rbs750netgear:rbs750_firmwarenetgear:rbs840netgear:rbs840_firmwarenetgear:rbs850netgear:rbs850_firmwarenetgear:rbs860netgear:rbs860_firmwarenetgear:rbse950netgear:rbse950_firmwarenetgear:rbse960netgear:rbse960_firmware

Fraquezas (CWE)

CWE-20

Referencias

https://www.netgear.com/support/product/rbr750(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr840(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr850(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbr860(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbre950(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbre960(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs750(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs840(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs850(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbs860(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbse950(a2826606-91e7-4eb6-899e-8484bd4575d5)
https://www.netgear.com/support/product/rbse960(a2826606-91e7-4eb6-899e-8484bd4575d5)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.