All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-11814
MEDIUMpublished 2026-08-11 16:17 UTC · 1 day ago · modified 2026-08-12 15:17 UTC
4.9
CVSS / 10
// description
A command injection vulnerability in the listed NETGEAR models allows a network-adjacent attacker with the ability to intercept and modify local network traffic (attacker-in-the-middle) to compromise the confidentiality and integrity of the affected device. This issue is limited to certain region-specific SKUs.
// weaknesses (CWE)
- CWE-295