cbcvebase.
CVE-2026-11738
published 2026-08-11

CVE-2026-11738: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make…

PriorityP421medium4.3CVSS 4.0
AVAACLATNPRHUINVCNVIHVANSCNSINSANEUCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUNRUVDRELUAmber
EPSS
0.20%
9.5th percentile
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to router software and functionality.

Affected

3 ranges
VendorProductVersion rangeFixed in
netgearr7000< **
netgearraxe500< V1.2.14.114V1.2.14.114
netgearrs700< V1.0.7.66V1.0.7.66
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.