PT-2026-88156 · NetGear · Xr1000+2

·

CVE-2026-9215

·

Published

2026-09-08

·

Updated

2026-09-08

CVSS v3.1

6.7

Medium

VectorAV:A/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:H
A cross site request forgery (CSRF) vulnerability in the listed NETGEAR models allows an attacker who can leverage social engineering techniques on a router administrator to tamper with router configuration and disrupt router operations with active assistance from the router administrator. There is no confidentiality impact due to this vulnerability.

Fix

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-9215

Affected Products

Xr1000
Xr1000V2
Xr500