CVE-2026-9213

HIGH WAF: Medium
CVSS 8.1 Published: 2026-06-09
CWE-20

A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper with traffic between the router and the Internet, to execute code on the device.

WAF Coverage Analysis

Improper Input Validation Medium WAF Coverage

OWASP: A03:2021 Injection

920xxx - Protocol Enforcement 941xxx - XSS / XXE 942xxx - SQL Injection

Affected Software

VendorProductVersion
netgearmr70_firmwareup to 1.0.4.48
netgearms70_firmwareup to 1.0.4.48
netgearraxe500_firmwareup to 1.2.14.114
netgearxr1000_firmwareup to 1.0.2.86

References

Back to CVE Database