CVE-2024-57232: NETGEAR RAX50 Firmware

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.

Affected products

  • NETGEAR RAX50 Firmware: version 1.0.2.26 only

Published 2025-05-05. Last modified 2026-06-17.