cbcvebase.
CVE-2026-0407
published 2026-01-13

CVE-2026-0407: An insufficient authentication vulnerability in NETGEAR WiFi range extenders allows a network adjacent attacker with WiFi authentication or a physical Ethernet…

medium6.1CVSS 4.0
AVAACLATNPRLUINVCHVIHVAHSCNSINSANEUCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUNRUVDREMUAmber
An insufficient authentication vulnerability in NETGEAR WiFi range extenders allows a network adjacent attacker with WiFi authentication or a physical Ethernet port connection to bypass the authentication process and access the admin panel.

Affected

8 ranges
VendorProductVersion rangeFixed in
netgearex2800< v1.0.1.82v1.0.1.82
netgearex2800_firmware< 1.0.1.821.0.1.82
netgearex3110< v1.0.1.82v1.0.1.82
netgearex3110_firmware< 1.0.1.821.0.1.82
netgearex5000< v1.0.1.82v1.0.1.82
netgearex5000_firmware< 1.0.1.821.0.1.82
netgearex6110< v1.0.1.82v1.0.1.82
netgearex6110_firmware< 1.0.1.821.0.1.82