Executive brief
A security vulnerability exists in certain NETGEAR RAX series routers that could allow an authorized user to execute unauthorized commands. By sending specially crafted requests to the device, a user with existing login credentials could bypass intended restrictions to modify router settings. This could lead to unauthorized changes in network configuration and compromise the overall security and operation of the home or business network.
Technical details
An improper input validation vulnerability (CWE-20) exists in the firmware of NETGEAR RAXE450 and RAXE500 routers. The flaw allows an authenticated user with high privileges to submit specially crafted requests that result in unauthorized command execution on the device. The attack vector is restricted to the adjacent network (AV:A), meaning the attacker must be on the same local network as the router. Successful exploitation enables the attacker to make unauthorized modifications to the router's configuration. The issue is addressed in firmware versions V1.2.14.114 and later.
Affected products
- NETGEAR RAXE450 Before V1.2.14.114
- NETGEAR RAXE500 Before V1.2.14.114
Timeline
- 2026-07-14: advisory
- 2026-07-14: disclosed