ZeroHour

CVE-2026-0403

CVSS 4.0
1.1 low
EPSS
<1%p21
Published
()
Modified
Description

An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected to the router's LAN to execute OS command injections.

Vendors
netgear
Products
rbe971 firmware, rbe970 firmware, rbr750 firmware, rbr850 firmware, rbr860 firmware, rbs750 firmware, rbs850 firmware, rbs860 firmware, rbre960 firmware, rbse960 firmware
Weakness
CWE-20
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:N/R:U/V:D/RE:M/U:Amber

In the news

No ingested article mentions this CVE yet.