MEDIUM 4.9 NVD
CVE-2026-11814
A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic
A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker-in-the-middle) to compromise the confidentiality and integrity of the affected device. This issue is limited to certain region-specific SKUs.
References
- https://www.netgear.com/support/product/be9300/
- https://www.netgear.com/support/product/mr60/
- https://www.netgear.com/support/product/ms60/
- https://www.netgear.com/support/product/r6700ax/
- https://www.netgear.com/support/product/rax10/
This medium severity vulnerability with a CVSS score of 4.9 was published on 2026-08-11 via NVD.
vulnfeed aggregates 9844 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.