Netgear Mr70 vulnerabilities
7 known vulnerabilities affecting netgear/mr70.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM5LOW1
Vulnerabilities
Page 1 of 1
CVE-2026-9213P3HIGHCVSS 8.1fixed in V1.0.4.482026-06-09
CVE-2026-9213 [HIGH] CWE-20 CVE-2026-9213: A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercep
A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper with traffic between the router and the Internet, to execute code on the device.
nvd
CVE-2026-11739P3MEDIUMCVSS 6.4fixed in V1.0.4.482026-08-11
CVE-2026-11739 [MEDIUM] CWE-78 CVE-2026-11739: A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-ad
A command injection vulnerability in certain affected NETGEAR Nighthawk
devices allows a network-adjacent attacker with the ability to intercept
and modify local network traffic (attacker in the middle) to compromise
the confidentiality and integrity of the affected device.
nvd
CVE-2026-62657P4MEDIUMCVSS 4.9fixed in V1.0.4.482026-07-14
CVE-2026-62657 [MEDIUM] CWE-599 CVE-2026-62657: A security flaw in the router's certificate validation process was discovered in the NETGEAR XR1000
A security flaw in the router's certificate validation process was
discovered in the NETGEAR XR1000 Gaming Router and certain Nighthawk models that could allow an unauthorized person to remotely access and take
control of the device.
nvd
CVE-2026-0418P4MEDIUMCVSS 4.5fixed in V1.0.3.282026-06-09
CVE-2026-0418 [MEDIUM] CWE-15 CVE-2026-0418: Insufficient configuration management in the listed devices allows authenticated administrators conn
Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network
to tamper with the system.
nvd
CVE-2026-0417P4MEDIUMCVSS 4.5fixed in V1.0.3.282026-06-09
CVE-2026-0417 [MEDIUM] CWE-20 CVE-2026-0417: Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated admin
Insufficient input validation vulnerability in the listed NETGEAR devices allows
authenticated administrators connected to the local network to tamper with
the router's integrity.
nvd
CVE-2026-9210P4MEDIUMCVSS 4.5fixed in V1.0.3.282026-06-09
CVE-2026-9210 [MEDIUM] CWE-20 CVE-2026-9210: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
CVE-2026-11734P4LOWCVSS 2.7fixed in V1.0.4.482026-08-11
CVE-2026-11734 [LOW] CWE-121 CVE-2026-11734: A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to c
A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.
nvd