Description
Unauthenticated users on the local network can cause the router to become unavailable by sending specially crafted requests.
References (7)
Core 7
Core References
Patch product
patch
https://www.netgear.com/support/product/rbr860/
Patch product
patch
https://www.netgear.com/support/product/rbre950/
Patch product
patch
https://www.netgear.com/support/product/rbre960/
Patch product
patch
https://www.netgear.com/support/product/rbs860/
Patch product
patch
https://www.netgear.com/support/product/rbse960/
Patch product
patch
https://www.netgear.com/support/product/rbse950/
Vendor Advisory vendor-advisory
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory
Scores
CVSS v3
6.5
EPSS
0.0036
EPSS Percentile
28.4%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-787
Status
published
Products (18)
NETGEAR/RBE970
V6.3.7.10 - V9.10.1.4
netgear/rbe970_firmware
< 9.10.1.4
NETGEAR/RBE971
V6.3.7.10 - V9.10.1.4
netgear/rbe971_firmware
< 9.10.1.4
NETGEAR/RBR860
V6.3.7.10 - V7.2.7.15
netgear/rbr860_firmware
< 7.2.7.15
NETGEAR/RBRE950
< v7.2.7.15
netgear/rbre950_firmware
< 7.2.7.15
NETGEAR/RBRE960
V6.3.7.10 - V7.2.7.15
netgear/rbre960_firmware
< 7.2.7.15
... and 8 more
Published
Jun 09, 2026
Tracked Since
Jun 09, 2026