An insufficient input validation vulnerability in NETGEAR Orbi devices'
DHCPv6 functionality allows network adjacent attackers authenticated
over WiFi or on LAN to execute OS command injections on the router.
DHCPv6 is not enabled by default.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-13 16:16
Updated : 2026-01-14 16:26
NVD link : CVE-2026-0404
Mitre link : CVE-2026-0404
CVE.ORG link : CVE-2026-0404
JSON object : View
Products Affected
No product.
CWE
CWE-20
Improper Input Validation
