CVE-2026-0416: NETGEAR RAXE450 Firmware
Medium severity, CVSS 4.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An insufficient input validation vulnerability in certain NETGEAR router models as listed allows an authenticated administrator with local network access to submit crafted input that bypasses intended management interface restrictions, resulting in unauthorized modification of protected router software or functionality.
Affected products
- NETGEAR RAXE450 Firmware: before 1.2.14.114 (fixed in 1.2.14.114)
- NETGEAR RAXE500 Firmware: before 1.2.14.114 (fixed in 1.2.14.114)
Published 2026-06-09. Last modified 2026-07-23.