cbcvebase.

Netgear Xr1000V2 Firmware vulnerabilities

5 known vulnerabilities affecting netgear/xr1000v2_firmware.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2026-0406P3HIGHCVSS 8.0fixed in 1.1.2.342026-01-13
CVE-2026-0406 [HIGH] CWE-20 CVE-2026-0406: An insufficient input validation vulnerability in the NETGEAR XR1000v2 allows attackers connected t An insufficient input validation vulnerability in the NETGEAR XR1000v2 allows attackers connected to the router's LAN to execute OS command injections.
nvd
CVE-2026-11739P3MEDIUMCVSS 6.4fixed in 1.1.0.222026-08-11
CVE-2026-11739 [MEDIUM] CWE-78 CVE-2026-11739: A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-ad A command injection vulnerability in certain affected NETGEAR Nighthawk devices allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker in the middle) to compromise the confidentiality and integrity of the affected device.
nvd
CVE-2026-11735P4MEDIUMCVSS 4.9fixed in 1.1.0.222026-08-11
CVE-2026-11735 [MEDIUM] CWE-121 CVE-2026-11735: A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authentica A stack-based buffer overflow vulnerability affects the listed NETGEAR models allowing an authenticated admin user to make unauthorized modification to the router's software and functionality.
nvd
CVE-2026-11736P4MEDIUMCVSS 4.9fixed in 1.1.0.222026-08-11
CVE-2026-11736 [MEDIUM] CWE-20 CVE-2026-11736: A stack-based buffer overflow vulnerability affects certain NETGEAR models allowing an authenticated A stack-based buffer overflow vulnerability affects certain NETGEAR models allowing an authenticated admin user to make unauthorized modification to router software and functionality.
nvd
CVE-2026-0410P4MEDIUMCVSS 4.5fixed in 1.1.0.222026-06-09
CVE-2026-0410 [MEDIUM] CWE-20 CVE-2026-0410: Authenticated administrators connected to the local network can gain elevated access to the router Authenticated administrators connected to the local network can gain elevated access to the router and make unauthorized changes to router software and functionality.
nvd