Fiche vulnérabilité
CVE-2026-11737 : faille moyenne netgear rax20 firmware (CVSS 4.5)
Description
Insufficient input validation vulnerability in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification to the device software and functionality.
En bref
- Sévérité
- Moyenne (CVSS 4.5)
- Vecteur CVSS
- CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 11 août 2026
- Dernière mise à jour
- 9 sept. 2026
Produits concernés
- netgear rax20 firmware
- netgear rax41 firmware
- netgear rax41v2 firmware
- netgear rax42 firmware
- netgear rax42v2 firmware
- netgear rax43 firmware
- netgear rax43v2 firmware
- netgear rax45 firmware
- netgear rax49s firmware
- netgear rax50 firmware
- netgear rax50v2 firmware
- netgear rax54s firmware
- netgear rax54sv2 firmware
Références
- Fiche CVE-2026-11737 sur le NVD (NIST)
- kb.netgear.com/000070887/August-2026-NETGEAR-Security-Advisory
- netgear.com/support/product/rax20/
- netgear.com/support/product/rax41/
- netgear.com/support/product/rax41v2/
- netgear.com/support/product/rax42/
- netgear.com/support/product/rax42v2/
- netgear.com/support/product/rax43/
- netgear.com/support/product/rax43v2/
- netgear.com/support/product/rax45/
- netgear.com/support/product/rax49s/
- netgear.com/support/product/rax50/
- netgear.com/support/product/rax50v2/