CVE-2026-0413
Buffer overflow vulnerability in certain NETGEAR Nighthawk routers
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 4.3EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
09 jun 2026Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A buffer overflow vulnerability due to insufficient input validation in the listed NETGEAR models allows authenticated administrators connected to the local network to make unauthorized modification of router software and functionality.
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:U
Productos afectados
NETGEAR · RBE370NETGEAR · RBE770NETGEAR · RBR750NETGEAR · RBR840NETGEAR · RBR850NETGEAR · RBR860NETGEAR · RBRE950NETGEAR · RBRE960NETGEAR · RBS750NETGEAR · RBS840NETGEAR · RBS850NETGEAR · RBS860NETGEAR · RBSE950NETGEAR · RBSE960¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisoryhttps://www.netgear.com/support/product/rbe372/https://www.netgear.com/support/product/rbe770/https://www.netgear.com/support/product/rbr750/https://www.netgear.com/support/product/rbr840/https://www.netgear.com/support/product/rbr850/https://www.netgear.com/support/product/rbr860/https://www.netgear.com/support/product/rbre950/https://www.netgear.com/support/product/rbre960/https://www.netgear.com/support/product/rbs750/https://www.netgear.com/support/product/rbs840/https://www.netgear.com/support/product/rbs850/