Insufficient Input Validation in NETGEAR R7000 Routers
CVE-2026-9214

4.3MEDIUM

Key Information:

Vendor

Netgear

Status
Vendor
CVE Published:
11 August 2026

What is CVE-2026-9214?

An insufficient input validation vulnerability in the NETGEAR R7000 routers permits authenticated administrators on the local network to execute unauthorized modifications to the router's software and its functionalities. This flaw can potentially compromise the security posture of a user's network, enabling malicious actors to alter essential settings and gain control over the device.

Affected Version(s)

R7000 V1.0.12.216

References

CVSS V4

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

quanghoa1
.