CVE-2026-3088

MEDIUM

Unauthenticated users can disrupt router operation

Title source: cna
STIX 2.1

Description

Unauthenticated users on the local network can cause the router to become unavailable by sending specially crafted requests.

Scores

CVSS v4 4.9
EPSS 0.0029
EPSS Percentile 20.5%
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:D/RE:L/U:Amber

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-787
Status published
Products (10)
NETGEAR/RBE970 V6.3.7.10 - V9.10.1.4
NETGEAR/RBE971 V6.3.7.10 - V9.10.1.4
NETGEAR/RBR860 V6.3.7.10 - V7.2.7.15
NETGEAR/RBRE950 < v7.2.7.15
NETGEAR/RBRE960 V6.3.7.10 - V7.2.7.15
NETGEAR/RBRE970 V6.3.7.10 - V9.10.1.4
NETGEAR/RBRE971 V6.3.7.10 - V9.10.1.4
NETGEAR/RBS860 < V7.2.7.15
NETGEAR/RBSE950 < v7.2.7.15
NETGEAR/RBSE960 < V7.2.7.15
Published Jun 09, 2026
Tracked Since Jun 09, 2026