Showing 2 vulnerabilities on this page for RAX35

Signals CISA KEV Ransomware Nuclei
NETGEAR vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Command injection vulnerability in some NETGEAR Nighthawk devices

A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker in the middle) to compromise the confidentiality and integrity of the affected device.

CWE-78Aug 11, 2026
CVSS4.9v4.0EPSS1.05%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

Missing TLS certificate validation in NETGEAR's ReadyCloud client app

An improper implementation of TLS certificate validation vulnerability found in NETGEAR's ReadyCloud client app which could allow an attacker to perform attacker-in-the-middle (MiTM) style attacks impacting the product's confidentiality. This vulnerability affects the listed NETGEAR models.

CWE-325Jun 9, 2026
CVSS4.6v4.0EPSS0.135%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX