{"dataType":"CVE_RECORD","dataVersion":"5.2","cveMetadata":{"cveId":"CVE-2026-62658","assignerOrgId":"a2826606-91e7-4eb6-899e-8484bd4575d5","state":"PUBLISHED","assignerShortName":"NETGEAR","dateReserved":"2026-07-14T16:31:02.509Z","datePublished":"2026-07-14T17:46:12.018Z","dateUpdated":"2026-07-15T17:01:41.135Z"},"containers":{"cna":{"providerMetadata":{"orgId":"a2826606-91e7-4eb6-899e-8484bd4575d5","shortName":"NETGEAR","dateUpdated":"2026-07-15T17:01:41.135Z"},"title":"Post-authentication Command Injection Vulnerability in certain Nighthawk RAX series models","datePublic":"2026-07-14T15:00:00.000Z","problemTypes":[{"descriptions":[{"lang":"en","cweId":"CWE-20","description":"CWE-20 Improper input validation","type":"CWE"}]}],"impacts":[{"capecId":"CAPEC-88","descriptions":[{"lang":"en","value":"CAPEC-88 OS Command Injection"}]}],"affected":[{"vendor":"NETGEAR","product":"RAX43","versions":[{"status":"affected","version":"0","lessThan":"V1.0.17.142","versionType":"custom"}],"defaultStatus":"unaffected"},{"vendor":"NETGEAR","product":"RAX45","versions":[{"status":"affected","version":"0","lessThan":"V1.0.17.142","versionType":"custom"}],"defaultStatus":"unaffected"},{"vendor":"NETGEAR","product":"RAX50","versions":[{"status":"affected","version":"0","lessThan":"V1.0.17.142","versionType":"custom"}],"defaultStatus":"unaffected"},{"vendor":"NETGEAR","product":"RAX54S","versions":[{"status":"affected","version":"0","lessThan":"V1.0.17.142","versionType":"custom"}],"defaultStatus":"unaffected"},{"vendor":"NETGEAR","product":"RAX54Sv2","versions":[{"status":"affected","version":"0","lessThan":"V1.1.6.36","versionType":"custom"}],"defaultStatus":"unaffected"}],"descriptions":[{"lang":"en","value":"A security flaw was discovered in certain NETGEAR Nighthawk RAX series routers\nthat could allow someone already logged in to the device to run unauthorized commands\nor code on the router.","supportingMedia":[{"type":"text/html","base64":false,"value":"<p><span>A security flaw was discovered in certain NETGEAR Nighthawk RAX series routers\nthat could allow someone already logged in to the device to run unauthorized commands\nor code on the router.</span></p>"}]}],"references":[{"url":"https://www.netgear.com/support/product/rax43/","tags":["product","patch"]},{"url":"https://www.netgear.com/support/product/rax45/","tags":["product","patch"]},{"url":"https://www.netgear.com/support/product/rax50/","tags":["product","patch"]},{"url":"https://www.netgear.com/support/product/rax54sv2/","tags":["product","patch"]},{"url":"https://kb.netgear.com/000070859/July-2026-NETGEAR-Security-Advisory","tags":["vendor-advisory"]}],"metrics":[{"format":"CVSS","scenarios":[{"lang":"en","value":"GENERAL"}],"cvssV4_0":{"attackVector":"ADJACENT","attackComplexity":"LOW","attackRequirements":"PRESENT","privilegesRequired":"HIGH","userInteraction":"NONE","vulnConfidentialityImpact":"NONE","subConfidentialityImpact":"NONE","vulnIntegrityImpact":"HIGH","subIntegrityImpact":"NONE","vulnAvailabilityImpact":"NONE","subAvailabilityImpact":"NONE","exploitMaturity":"PROOF_OF_CONCEPT","Safety":"NOT_DEFINED","Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","valueDensity":"NOT_DEFINED","vulnerabilityResponseEffort":"NOT_DEFINED","providerUrgency":"NOT_DEFINED","version":"4.0","baseSeverity":"MEDIUM","baseScore":4.7,"vectorString":"CVSS:4.0/AV:A/AC:L/AT:P/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N/E:P"}}],"solutions":[{"lang":"en","value":"Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in:\n\nProductFixed VersionRAX43 (EoS) Nighthawk AX5 5-Stream AX4200 WiFi Router V1.0.17.142 https://www.netgear.com/support/product/rax43/ RAX45 (EoS) Nighthawk AX6 6-Stream AX4300 WiFi Router V1.0.17.142 https://www.netgear.com/support/product/rax45/ RAX50 Nighthawk AX6 6-Stream AX5400 WiFi 6 Router V1.0.17.142 https://www.netgear.com/support/product/rax50/ RAX54S Nighthawk AX6 6-Stream AX5400 WiFi Router V1.0.17.142 https://www.netgear.com/support/product/rax54s/ RAX54Sv2 Nighthawk AX6 6-Stream AX5400 WiFi Router V1.1.6.36 https://www.netgear.com/support/product/rax54sv2/ \n\nModels marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.","supportingMedia":[{"type":"text/html","base64":false,"value":"<p>Devices with automatic updates enabled may already have this patch applied. If not, please check the firmware version and update it to the latest. Fixed in:</p><table><thead><tr><th>Product</th><th>Fixed Version</th></tr></thead><tbody><tr><td><b>RAX43 (EoS)</b> Nighthawk AX5 5-Stream AX4200 WiFi Router</td><td><a href=\"https://www.netgear.com/support/product/rax43/\">V1.0.17.142</a></td></tr><tr><td><b>RAX45 (EoS)</b> Nighthawk AX6 6-Stream AX4300 WiFi Router</td><td><a href=\"https://www.netgear.com/support/product/rax45/\">V1.0.17.142</a></td></tr><tr><td><b>RAX50</b> Nighthawk AX6 6-Stream AX5400 WiFi 6 Router</td><td><a href=\"https://www.netgear.com/support/product/rax50/\">V1.0.17.142</a></td></tr><tr><td><b>RAX54S</b> Nighthawk AX6 6-Stream AX5400 WiFi Router</td><td><a href=\"https://www.netgear.com/support/product/rax54s/\">V1.0.17.142</a></td></tr><tr><td><b>RAX54Sv2</b> Nighthawk AX6 6-Stream AX5400 WiFi Router</td><td><a href=\"https://www.netgear.com/support/product/rax54sv2/\">V1.1.6.36</a></td></tr></tbody></table><p>Models marked (EoS) have reached End-of-Support phase, and no security updates are planned. NETGEAR strongly recommends that you retire these devices and upgrade to a newer NETGEAR device for continued security support.</p>"}]}],"credits":[{"lang":"en","value":"Matt19","type":"finder"}],"source":{"discovery":"EXTERNAL"},"x_generator":{"engine":"Vulnogram 1.0.3"}},"adp":[{"metrics":[{"other":{"type":"ssvc","content":{"timestamp":"2026-07-15T14:48:35.605089Z","id":"CVE-2026-62658","options":[{"Exploitation":"none"},{"Automatable":"no"},{"Technical Impact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}}],"title":"CISA ADP Vulnrichment","providerMetadata":{"orgId":"134c704f-9b21-4f2e-91b3-4a467353bcc0","shortName":"CISA-ADP","dateUpdated":"2026-07-15T15:12:55.486Z"}}]}}