CVE-2026-0405
EUVD-2026-223713.01.2026, 16:16
An authentication bypass vulnerability in NETGEAR Orbi devices allows users connected to the local network to access the router web interface as an admin.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| netgear | cbr750_firmware | 𝑥 < 4.6.14.8 |
| netgear | nbr750_firmware | 𝑥 < 4.6.15.14 |
| netgear | rbe370_firmware | 𝑥 < 12.1.3.11 |
| netgear | rbe371_firmware | 𝑥 < 12.1.3.11 |
| netgear | rbe372_firmware | 𝑥 < 12.1.3.11 |
| netgear | rbe373_firmware | 𝑥 < 12.1.3.11 |
| netgear | rbe374_firmware | 𝑥 < 12.1.3.11 |
| netgear | rbe770_firmware | 𝑥 < 10.5.20.7 |
| netgear | rbe771_firmware | 𝑥 < 10.5.20.7 |
| netgear | rbe772_firmware | 𝑥 < 10.5.20.7 |
| netgear | rbe773_firmware | 𝑥 < 10.5.20.7 |
| netgear | rbe970_firmware | 𝑥 < 9.13.2.1 |
| netgear | rbe971_firmware | 𝑥 < 9.13.2.1 |
| netgear | rbr750_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbr840_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbr850_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbr860_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbs750_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbs840_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbs850_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbs860_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbre950_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbre960_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbse950_firmware | 𝑥 < 7.2.8.2 |
| netgear | rbse960_firmware | 𝑥 < 7.2.8.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References