216.73.216.197

CVE-2026-0409

· Published 09/06/2026 17:16 · Modified 10/06/2026 12:16

Labels: CVE-2026-0409 2026-06-09CVE-2026-0409CWE-119a2826606-91e7-4eb6-899e-8484bd4575d5

Essential information

Published
09/06/2026 17:16
Modified
10/06/2026 12:16
Author
Creator
CVSS
4.8 MEDIUM (v3) 4.8 MEDIUM (v4.0)
CISA KEV
No
CWE
CWE-119
CVSS vector

CVSS metrics

Description

A NETGEAR security issue that could allow an attacker with ability to intercept and tamper with traffic between the router and the Internet to run commands on your device when the device administrator performs certain specific management actions. This issue affects NETGEAR Orbi 370 series devices before V12.1.2.7.

NVD status

Status
Analyzed — CVE has been recently published to the CVE List and has been received by the NVD.
Source
nist-nvd-api
NVD
View on NVD

Affected products (CPE)

ProductCPE
netgear / rbe370 firmware cpe:2.3:o:netgear:rbe370_firmware:*:*:*:*:*:*:*:*
netgear / rbe370 cpe:2.3:h:netgear:rbe370:-:*:*:*:*:*:*:*
netgear / rbe371 firmware cpe:2.3:o:netgear:rbe371_firmware:*:*:*:*:*:*:*:*
netgear / rbe371 cpe:2.3:h:netgear:rbe371:-:*:*:*:*:*:*:*
netgear / rbe372 firmware cpe:2.3:o:netgear:rbe372_firmware:*:*:*:*:*:*:*:*
netgear / rbe372 cpe:2.3:h:netgear:rbe372:-:*:*:*:*:*:*:*
netgear / rbe374 firmware cpe:2.3:o:netgear:rbe374_firmware:*:*:*:*:*:*:*:*
netgear / rbe374 cpe:2.3:h:netgear:rbe374:-:*:*:*:*:*:*:*

References