cbcvebase.

Netgear Mr60 vulnerabilities

5 known vulnerabilities affecting netgear/mr60.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM5

Vulnerabilities

Page 1 of 1
CVE-2026-11739P3MEDIUMCVSS 6.4fixed in V1.1.8.1422026-08-11
CVE-2026-11739 [MEDIUM] CWE-78 CVE-2026-11739: A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-ad A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker in the middle) to compromise the confidentiality and integrity of the affected device.
nvd
CVE-2026-11814P3MEDIUMCVSS 6.8fixed in V1.1.8.1422026-08-11
CVE-2026-11814 [MEDIUM] CWE-295 CVE-2026-11814: A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker wi A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker-in-the-middle) to compromise the confidentiality and integrity of the affected device. This issue is limited to certain region-specific SKUs.
nvd
CVE-2026-0418P4MEDIUMCVSS 4.5fixed in V1.1.7.1282026-06-09
CVE-2026-0418 [MEDIUM] CWE-15 CVE-2026-0418: Insufficient configuration management in the listed devices allows authenticated administrators conn Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network to tamper with the system.
nvd
CVE-2026-0417P4MEDIUMCVSS 4.5fixed in V1.1.7.1322026-06-09
CVE-2026-0417 [MEDIUM] CWE-20 CVE-2026-0417: Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated admin Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated administrators connected to the local network to tamper with the router's integrity.
nvd
CVE-2026-9210P4MEDIUMCVSS 4.5fixed in V1.1.7.1322026-06-09
CVE-2026-9210 [MEDIUM] CWE-20 CVE-2026-9210: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
Netgear Mr60 vulnerabilities | cvebase