Netgear Rbe970 vulnerabilities
7 known vulnerabilities affecting netgear/rbe970.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM4
Vulnerabilities
Page 1 of 1
CVE-2026-0405P3HIGHCVSS 7.8fixed in v9.13.2.12026-01-13
CVE-2026-0405 [HIGH] CWE-287 CVE-2026-0405: An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local
An authentication bypass vulnerability in NETGEAR Orbi devices allows
users connected to the local network to access the router web interface
as an admin.
nvd
CVE-2026-0403P3HIGHCVSS 8.0fixed in v9.10.0.22026-01-13
CVE-2026-0403 [HIGH] CWE-20 CVE-2026-0403: An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected t
An insufficient input validation vulnerability in NETGEAR Orbi routers
allows attackers connected to the router's LAN to execute OS command
injections.
nvd
CVE-2026-0411P3HIGHCVSS 8.0fixed in 6.3.8.112026-06-09
CVE-2026-0411 [HIGH] CWE-200 CVE-2026-0411: An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could al
An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could allow a user connected to your network to gain administrator access to the Orbi router. The listed NETGEAR models are affected by this vulnerability.
Orbi WiFi Systems without satellite devices are not impacted by this issue.
nvd
CVE-2026-3088P4MEDIUMCVSS 6.5≥ V6.3.7.10, < V9.10.1.42026-06-09
CVE-2026-3088 [MEDIUM] CWE-787 CVE-2026-3088: Unauthenticated users on the local network can cause the router to become unavailable by sending spe
Unauthenticated users on the local network can cause the router to become unavailable by sending specially crafted requests.
nvd
CVE-2026-62655P4MEDIUMCVSS 5.7fixed in V9.10.1.42026-07-14
CVE-2026-62655 [MEDIUM] CWE-121 CVE-2026-62655: A security flaw was found in certain NETGEAR Orbi models that could allow an unauthorized user to ca
A
security flaw was found in certain NETGEAR Orbi models that
could allow an unauthorized user to cause the device to stop responding or
restart unexpectedly, disrupting network connectivity and making the device
temporarily unavailable.
nvd
CVE-2026-0415P4MEDIUMCVSS 4.5fixed in V9.12.4.92026-06-09
CVE-2026-0415 [MEDIUM] CWE-20 CVE-2026-0415: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
CVE-2026-0414P4MEDIUMCVSS 4.5fixed in V9.12.4.92026-06-09
CVE-2026-0414 [MEDIUM] CWE-94 CVE-2026-0414: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd