VYPR

WiFi range extenders

by Netgear

CVEs (2)

  • CVE-2026-0408Jan 13, 2026
    risk 0.00cvss epss 0.00

    A path traversal vulnerability in NETGEAR WiFi range extenders allows an attacker with LAN authentication to access the router's IP and review the contents of the dynamically generated webproc file, which records the username and password submitted to the router GUI.

  • CVE-2026-0407Jan 13, 2026
    risk 0.00cvss epss 0.00

    An insufficient authentication vulnerability in NETGEAR WiFi range extenders allows a network adjacent attacker with WiFi authentication or a physical Ethernet port connection to bypass the authentication process and access the admin panel.