CVE-2026-11738

Summary

Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.

Affected Software

VendorProductVersion RangeStatus
NETGEARR70000 < *affected
NETGEARRAXE5000 < V1.2.14.114affected
NETGEARRS7000 < V1.0.7.66affected

Weaknesses

  • CWE-20: CWE-20 Improper input validation

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References