CVE-2026-62657CWE-599

Certificate validation vulnerability in NETGEAR Gaming Router and certain Nighthawk models

Medium · published July 14, 2026

CVSS v4.0
4.9
EPSS
0%
Percentile
4.5
In the wild
Unconfirmed
What it is

A security flaw in the router's certificate validation process was

discovered in the NETGEAR XR1000 Gaming Router and certain Nighthawk models that could allow an unauthorized person to remotely access and take

control of the device.

The record
Technical detail
CVSS v4.0
4.9 · MEDIUM
Vector
CVSS:4.0/AV:A/AC:H/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:U/U:Amber
EPSS
0.00150 · 4.5th percentile
Weakness
CWE-599 · Missing Validation of OpenSSL Certificate
Published
2026-07-14T17:46Z
EPSS history
Timeline
  • 14 JUL 17:46Z
    Certificate validation vulnerability in NETGEAR Gaming Router and certain Nighthawk models
    cvelistv5