ID

VAR-202606-2782


CVE

CVE-2026-9213


TITLE

of netgear MR70 FIRMWARE Vulnerabilities related to input confirmation in multiple products such as

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209

DESCRIPTION

A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper with traffic between the router and the Internet, to execute code on the device. - All information handled by the software may be overwritten. - The software may completely shut down

Trust: 1.62

sources: NVD: CVE-2026-9213 // JVNDB: JVNDB-2026-020209

AFFECTED PRODUCTS

vendor:netgearmodel:raxe500scope:ltversion:1.2.14.114

Trust: 1.0

vendor:netgearmodel:mr70scope:ltversion:1.0.4.48

Trust: 1.0

vendor:netgearmodel:xr1000scope:ltversion:1.0.2.86

Trust: 1.0

vendor:netgearmodel:ms70scope:ltversion:1.0.4.48

Trust: 1.0

vendor:ネットギアmodel:xr1000scope: - version: -

Trust: 0.8

vendor:ネットギアmodel:mr70scope: - version: -

Trust: 0.8

vendor:ネットギアmodel:raxe500scope: - version: -

Trust: 0.8

vendor:ネットギアmodel:ms70scope: - version: -

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209 // NVD: CVE-2026-9213

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2026-9213
value: HIGH

Trust: 1.0

a2826606-91e7-4eb6-899e-8484bd4575d5: CVE-2026-9213
value: MEDIUM

Trust: 1.0

NVD: CVE-2026-9213
value: HIGH

Trust: 0.8

nvd@nist.gov: CVE-2026-9213
baseSeverity: HIGH
baseScore: 8.1
vectorString: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: HIGH
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 2.2
impactScore: 5.9
version: 3.1

Trust: 1.0

NVD: CVE-2026-9213
baseSeverity: HIGH
baseScore: 8.1
vectorString: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
attackVector: NETWORK
attackComplexity: HIGH
privilegesRequired: NONE
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: NONE
impactScore: NONE
version: 3.0

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209 // NVD: CVE-2026-9213 // NVD: CVE-2026-9213

PROBLEMTYPE DATA

problemtype:CWE-20

Trust: 1.0

problemtype:Inappropriate input confirmation (CWE-20) [ others ]

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209 // NVD: CVE-2026-9213

PATCH

title:June 2026 NETGEAR Security Advisory - NETGEAR Supporturl:https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209

EXTERNAL IDS

db:NVDid:CVE-2026-9213

Trust: 2.6

db:JVNDBid:JVNDB-2026-020209

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209 // NVD: CVE-2026-9213

REFERENCES

url:https://www.netgear.com/support/product/ms70/

Trust: 1.8

url:https://www.netgear.com/support/product/raxe500/

Trust: 1.8

url:https://www.netgear.com/support/product/xr1000/

Trust: 1.8

url:https://www.netgear.com/support/product/mr70/

Trust: 1.8

url:https://kb.netgear.com/000070811/june-2026-netgear-security-advisory

Trust: 1.0

url:https://nvd.nist.gov/vuln/detail/cve-2026-9213

Trust: 0.8

sources: JVNDB: JVNDB-2026-020209 // NVD: CVE-2026-9213

SOURCES

db:JVNDBid:JVNDB-2026-020209
db:NVDid:CVE-2026-9213

LAST UPDATE DATE

2026-07-24T23:10:10.758000+00:00


SOURCES UPDATE DATE

db:JVNDBid:JVNDB-2026-020209date:2026-06-22T02:32:00
db:NVDid:CVE-2026-9213date:2026-07-23T08:10:00.137

SOURCES RELEASE DATE

db:JVNDBid:JVNDB-2026-020209date:2026-06-22T00:00:00
db:NVDid:CVE-2026-9213date:2026-06-09T17:17:51.733