CVE-2026-0420
Missing TLS certificate validation in NETGEAR's ReadyCloud client app
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
6th
An improper implementation of TLS certificate validation vulnerability found in NETGEAR's ReadyCloud client app which could allow an attacker to perform attacker-in-the-middle (MiTM) style attacks impacting the product's confidentiality. This vulnerability affects the listed NETGEAR models.
| CWE | CWE-325 |
| Vendor | netgear |
| Product | rax120v1 |
| Published | Jun 9, 2026 |
| Last Updated | Jun 11, 2026 |
Stay Ahead of the Next One
Get instant alerts for netgear rax120v1
Be the first to know when new unknown vulnerabilities affecting netgear rax120v1 are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
Affected Versions
NETGEAR / RAX120v1
0 < V1.2.9.52
NETGEAR / RAX120v2
0 < V1.2.9.52
NETGEAR / RAX35
0 < V1.0.6.106
NETGEAR / RAX38
0 < V1.0.6.106
NETGEAR / RAX40
0 < V1.0.6.106
References
netgear.com: https://www.netgear.com/support/product/rax35/ netgear.com: https://www.netgear.com/support/product/rax38/ netgear.com: https://www.netgear.com/support/product/rax40/ netgear.com: https://www.netgear.com/support/product/rax120v2/ kb.netgear.com: https://kb.netgear.com/000070811/June-2026-NETGEAR-Security-Advisory
Credits
talsonor