Executive brief
A security vulnerability exists in certain NETGEAR routers that could allow an administrator on the local network to modify the device's software. While this requires existing administrative access, it could allow a user to bypass intended restrictions or permanently alter the router's functionality. This could lead to unauthorized changes in network configuration or the installation of persistent unauthorized software.
Technical details
An insufficient input validation vulnerability (CWE-94) exists in the firmware of certain NETGEAR models, including the RBE970. The flaw allows an attacker with high privileges (administrator) who is connected to the local network (adjacent) to inject code or otherwise modify the router's software and core functionality. This is achieved through improper control of code generation. While the attack requires prior authentication, it enables an authorized user to perform unauthorized modifications that should be restricted by the system's integrity controls. Netgear has acknowledged the issue with a CVSS 4.0 score of 4.3.
Affected products
- NETGEAR RBE970
Timeline
- 2026-06-09: disclosed
- 2026-06-09: advisory