CVE-2024-57233: NETGEAR RAX50 Firmware

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

NETGEAR RAX5 (AX1600 WiFi Router) v1.0.2.26 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.

Affected products

  • NETGEAR RAX50 Firmware: version 1.0.2.26 only

Published 2025-05-05. Last modified 2026-06-17.