Back

MEDIUM

Certain NETGEAR routers allow unauthenticated users to gain control of the router

Published Jun 9, 2026

Description

An unauthenticated user on the local network can gain control of the router and make unauthorized changes to its operation.

Affected products

Remediation

Vendor solution

Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in:

ProductFixed VersionCAX30 Nighthawk AX6 6-Stream WiFi 6 Cable Modem Router V2.2.1.4 https://www.netgear.com/support/product/cax30/ RAX30 Nighthawk AX5 5-Stream AX2400 WiFi 6 Router V1.0.10.94 https://www.netgear.com/support/product/rax30/ RAX5 4-Stream AX1600 WiFi 6 Router V1.0.5.34 https://www.netgear.com/support/product/rax5/ RAXE300 Nighthawk AXE7800 Tri-Band WiFi 6E Router V1.0.10.72 https://www.netgear.com/support/product/raxe300/

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner NETGEAR
Published Jun 9, 2026
Updated Jun 10, 2026
Reserved May 21, 2026
CISA Vulnrichment
Updated Jun 9, 2026
NVD
Status Analyzed
Modified Jul 23, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner NETGEAR
Published Jun 9, 2026
Updated Jun 10, 2026
Exploited since n/a
EUVD-2026-35458