cbcvebase.

Netgear Rbe970 Firmware vulnerabilities

6 known vulnerabilities affecting netgear/rbe970_firmware.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2026-0405P3HIGHCVSS 7.8fixed in 9.13.2.12026-01-13
CVE-2026-0405 [HIGH] CWE-287 CVE-2026-0405: An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local network to access the router web interface as an admin.
nvd
CVE-2026-0403P3HIGHCVSS 8.0fixed in 9.10.0.22026-01-13
CVE-2026-0403 [HIGH] CWE-20 CVE-2026-0403: An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected t An insufficient input validation vulnerability in NETGEAR Orbi routers allows attackers connected to the router's LAN to execute OS command injections.
nvd
CVE-2026-0411P3HIGHCVSS 8.0fixed in 9.13.2.12026-06-09
CVE-2026-0411 [HIGH] CWE-200 CVE-2026-0411: An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could al An information disclosure vulnerability in the NETGEAR Orbi satellites (RBR/RBE/RBS Series) could allow a user connected to your network to gain administrator access to the Orbi router. The listed NETGEAR models are affected by this vulnerability. Orbi WiFi Systems without satellite devices are not impacted by this issue.
nvd
CVE-2026-3088P4MEDIUMCVSS 6.5fixed in 9.10.1.42026-06-09
CVE-2026-3088 [MEDIUM] CWE-787 CVE-2026-3088: Unauthenticated users on the local network can cause the router to become unavailable by sending spe Unauthenticated users on the local network can cause the router to become unavailable by sending specially crafted requests.
nvd
CVE-2026-0415P4MEDIUMCVSS 4.5fixed in 9.12.4.92026-06-09
CVE-2026-0415 [MEDIUM] CWE-20 CVE-2026-0415: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
CVE-2026-0414P4MEDIUMCVSS 4.5fixed in 9.12.4.92026-06-09
CVE-2026-0414 [MEDIUM] CWE-94 CVE-2026-0414: Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated admini Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
nvd
Netgear Rbe970 Firmware vulnerabilities | cvebase