LOW 1.2 NVD
CVE-2026-9216
An insufficient input validation vulnerability in the listed NETGEAR RAX series models allows a network-adjacent attacker having network access (such as WiFi cr
An insufficient input validation vulnerability in the listed NETGEAR RAX series models allows a network-adjacent attacker having network access (such as WiFi credentials) to crash the router's management UI. There is no confidentiality or integrity impact. A crash of the router's management UI does not impact the availability of the router's core services like WiFi network.
Affected Products
- netgear/rax30
- netgear/rax30_firmware
- netgear/rax35
- netgear/rax35_firmware
- netgear/rax38
- netgear/rax38_firmware
- netgear/rax40
- netgear/rax40_firmware
References
- https://kb.netgear.com/000070912/September-2026-NETGEAR-Security-Advisory
- https://www.netgear.com/support/product/rax30
- https://www.netgear.com/support/product/rax35
- https://www.netgear.com/support/product/rax38
- https://www.netgear.com/support/product/rax40
This low severity vulnerability with a CVSS score of 1.2 was published on 2026-09-08 via NVD. Affected: netgear/rax30, netgear/rax30_firmware, netgear/rax35 and 5 more.
vulnfeed aggregates 12842 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.