Home
MEDIUM: 4.8 CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/AU:N/R:U/V:D/RE:L/U:AmberDefault status
unaffected
Any version
affected
Default status
unaffected
Any version
affected
Description
Improper Input Validation vulnerability in NETGEAR R6260 and NETGEAR R6850 allows unauthenticated attackers connected to LAN with ability to perform MiTM attacks and control over DNS Server to perform command execution.This issue affects R6260: through 1.1.0.86; R6850: through 1.1.0.86.
Problem types
CWE-20 Improper Input Validation
Product status
Any version
Any version
Credits
dcmtruman
References
www.netgear.com/support/product/r6850
www.netgear.com/support/product/r6260
kb.netgear.com/.../NETGEAR-Security-Advisories-November-2025