PT-2026-2626 · NetGear · Netgear Orbi Routers

Fxc233

·

Published

2026-01-13

·

Updated

2026-02-20

·

CVE-2026-0403

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NETGEAR Orbi routers (affected versions not specified)
Description An insufficient input validation issue exists in NETGEAR Orbi routers. This allows attackers connected to the router’s LAN to execute OS command injections. The issue involves a lack of proper validation of user-supplied input, potentially enabling malicious code execution.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

BDU:2026-00540
CVE-2026-0403

Affected Products

Netgear Orbi Routers