Rax43 firmware
This hub aggregates every CVE we track for Rax43 firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
26
CVEs tracked
7
Critical
10
High
0
In CISA KEV
Severity distribution
HIGH10MEDIUM9CRITICAL7
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
4
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Rax43 firmware.
- CVE-2026-0418Certain NETGEAR devices allow administrators to tamper with system4.5
- CVE-2026-0417Insufficient input validation in certain NETGEAR routers4.5
- CVE-2026-9210Certain NETGEAR routers allow authenticated administrators to gain unintended control of the router4.5
- CVE-2026-0410Insufficient input validation in certain NETGEAR routers4.5
- CVE-2025-12946Improper input validation in NETGEAR Nighthawk routers7.5
- CVE-2021-34983NETGEAR Multiple Routers httpd Missing Authentication for Critical Function Information Disclosure Vulnerability6.5
- CVE-2021-34982NETGEAR Multiple Routers httpd Stack-based Buffer Overflow Remote Code Execution Vulnerability8.8
- CVE-2022-27642This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Authentication is not required to exploit this ...8.8
- CVE-2022-27645This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6700v3 routers. Authentication is not required to exploit this vulnerability. The...8.8
- CVE-2022-27647This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R6700v3 1.0.4.120_10.0.91 routers. Although authentication is required to exploit...8.0
- CVE-2021-20169Netgear RAX43 version 1.0.3.96 does not utilize secure communications to the web interface. By default, all communication to/from the device is sent via HTTP, which causes potentially sensitive inf...6.8
- CVE-2021-20167Netgear RAX43 version 1.0.3.96 contains a command injection vulnerability. The readycloud cgi application is vulnerable to command injection in the name parameter.8.0
- CVE-2021-20168Netgear RAX43 version 1.0.3.96 does not have sufficient protections to the UART interface. A malicious actor with physical access to the device is able to connect to the UART port via a serial conn...6.8
- CVE-2021-20166Netgear RAX43 version 1.0.3.96 contains a buffer overrun vulnerability. The URL parsing functionality in the cgi-bin endpoint of the router containers a buffer overrun issue that can redirection co...8.8
- CVE-2021-20170Netgear RAX43 version 1.0.3.96 makes use of hardcoded credentials. It does not appear that normal users are intended to be able to manipulate configuration backups due to the fact that they are enc...8.8
Product normalization is registry-driven with AI assist and human review. How it works