CVE-2024-57234: NETGEAR RAX50 Firmware

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

NETGEAR RAX5 (AX1600 WiFi Router) V1.0.2.26 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.

Affected products

  • NETGEAR RAX50 Firmware: version 1.0.2.26 only

Published 2025-05-05. Last modified 2026-06-17.