Netgear Mr70 Firmware vulnerabilities
6 known vulnerabilities affecting netgear/mr70_firmware.
Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM4LOW1
Vulnerabilities
Page 1 of 1
CVE-2026-9213P3HIGHCVSS 8.1fixed in 1.0.4.482026-06-09
CVE-2026-9213 [HIGH] CWE-20 CVE-2026-9213: A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercep
A vulnerability in the affected NETGEAR gaming routers allows attackers with the ability to intercept and tamper with traffic between the router and the Internet, to execute code on the device.
nvd
CVE-2026-11739P3MEDIUMCVSS 6.4fixed in 1.0.4.482026-08-11
CVE-2026-11739 [MEDIUM] CWE-78 CVE-2026-11739: A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-ad
A command injection vulnerability in certain affected NETGEAR Nighthawk
devices allows a network-adjacent attacker with the ability to intercept
and modify local network traffic (attacker in the middle) to compromise
the confidentiality and integrity of the affected device.
nvd
CVE-2026-0418P4MEDIUMCVSS 4.5fixed in 1.0.3.282026-06-09
CVE-2026-0418 [MEDIUM] CWE-15 CVE-2026-0418: Insufficient configuration management in the listed devices allows authenticated administrators conn
Insufficient configuration management in the listed devices allows authenticated administrators connected to the local network
to tamper with the system.
nvd
CVE-2026-0417P4MEDIUMCVSS 4.5fixed in 1.0.3.282026-06-09
CVE-2026-0417 [MEDIUM] CWE-20 CVE-2026-0417: Insufficient input validation vulnerability in the listed NETGEAR devices allows authenticated admin
Insufficient input validation vulnerability in the listed NETGEAR devices allows
authenticated administrators connected to the local network to tamper with
the router's integrity.
nvd
CVE-2026-9210P4MEDIUMCVSS 4.5fixed in 1.0.3.282026-06-09
CVE-2026-9210 [MEDIUM] CWE-20 CVE-2026-9210: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
CVE-2026-11734P4LOWCVSS 2.7fixed in 1.0.4.482026-08-11
CVE-2026-11734 [LOW] CWE-121 CVE-2026-11734: A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to c
A buffer overflow vulnerability in the listed NETGEAR models allows an authenticated admin user to cause the affected device to become temporarily unavailable.
nvd