ID

VAR-202606-1905


CVE

CVE-2026-9212


DESCRIPTION

Insufficient authentication and input validation in the listed NETGEAR models allow users connected to the local network to execute commands impacting the product's confidentiality or change certain configurations.

Trust: 1.0

sources: NVD: CVE-2026-9212

AFFECTED PRODUCTS

vendor:netgearmodel:rbr350scope:ltversion:4.4.2.1

Trust: 1.0

vendor:netgearmodel:lbr20scope:ltversion:2.7.6.8

Trust: 1.0

vendor:netgearmodel:rbr40scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rax120scope:ltversion:1.2.10.56

Trust: 1.0

vendor:netgearmodel:rbr10scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:r9000scope:ltversion:1.0.6.46

Trust: 1.0

vendor:netgearmodel:r6700axscope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rax10scope:ltversion:1.0.5.50

Trust: 1.0

vendor:netgearmodel:rbs10scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rbs350scope:ltversion:4.4.2.1

Trust: 1.0

vendor:netgearmodel:xr500scope:ltversion:2.3.3.136

Trust: 1.0

vendor:netgearmodel:rbs20scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rbr20scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rbs50scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:lbr1020scope:ltversion:2.6.4.60

Trust: 1.0

vendor:netgearmodel:rbs40scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:rbr50scope:eqversion: -

Trust: 1.0

vendor:netgearmodel:xr450scope:ltversion:2.3.3.136

Trust: 1.0

vendor:netgearmodel:rax78scope:ltversion:1.0.19.172

Trust: 1.0

vendor:netgearmodel:rax70scope:ltversion:1.0.19.172

Trust: 1.0

vendor:netgearmodel:rax36sscope:ltversion:1.0.5.50

Trust: 1.0

vendor:netgearmodel:r7800scope:ltversion:1.0.4.96

Trust: 1.0

sources: NVD: CVE-2026-9212

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2026-9212
value: HIGH

Trust: 1.0

a2826606-91e7-4eb6-899e-8484bd4575d5: CVE-2026-9212
value: MEDIUM

Trust: 1.0

nvd@nist.gov: CVE-2026-9212
baseSeverity: HIGH
baseScore: 8.0
vectorString: CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: ADJACENT
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.1
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: NVD: CVE-2026-9212 // NVD: CVE-2026-9212

PROBLEMTYPE DATA

problemtype:CWE-306

Trust: 1.0

problemtype:CWE-20

Trust: 1.0

sources: NVD: CVE-2026-9212

EXTERNAL IDS

db:NVDid:CVE-2026-9212

Trust: 1.0

sources: NVD: CVE-2026-9212

REFERENCES

url:https://www.netgear.com/support/product/rax120v2/

Trust: 1.0

url:https://www.netgear.com/support/product/rbr40/

Trust: 1.0

url:https://www.netgear.com/support/product/r7800/

Trust: 1.0

url:https://www.netgear.com/support/product/rbs50/

Trust: 1.0

url:https://www.netgear.com/support/product/rax120/

Trust: 1.0

url:https://www.netgear.com/support/product/rbr50/

Trust: 1.0

url:https://www.netgear.com/support/product/rbr350/

Trust: 1.0

url:https://www.netgear.com/support/product/rax10/

Trust: 1.0

url:https://www.netgear.com/support/product/lbr1020/

Trust: 1.0

url:https://www.netgear.com/support/product/rax78/

Trust: 1.0

url:https://www.netgear.com/support/product/xr500/

Trust: 1.0

url:https://www.netgear.com/support/product/rbr10/

Trust: 1.0

url:https://www.netgear.com/support/product/r9000/

Trust: 1.0

url:https://www.netgear.com/support/product/xr450/

Trust: 1.0

url:https://www.netgear.com/support/product/rax36s/

Trust: 1.0

url:https://www.netgear.com/support/product/lbr20/

Trust: 1.0

url:https://www.netgear.com/support/product/rbs10/

Trust: 1.0

url:https://www.netgear.com/support/product/rbs20/

Trust: 1.0

url:https://www.netgear.com/support/product/rbs40/

Trust: 1.0

url:https://www.netgear.com/support/product/rbr20/

Trust: 1.0

url:https://kb.netgear.com/000070811/june-2026-netgear-security-advisory

Trust: 1.0

url:https://www.netgear.com/support/product/r6700ax/

Trust: 1.0

url:https://www.netgear.com/support/product/rax70/

Trust: 1.0

url:https://www.netgear.com/support/product/rbs350/

Trust: 1.0

sources: NVD: CVE-2026-9212

SOURCES

db:NVDid:CVE-2026-9212

LAST UPDATE DATE

2026-06-19T23:15:00.857000+00:00


SOURCES UPDATE DATE

db:NVDid:CVE-2026-9212date:2026-06-18T15:25:07.440

SOURCES RELEASE DATE

db:NVDid:CVE-2026-9212date:2026-06-09T17:17:51.517