CVE-2026-24714
Some end of service NETGEAR products provide "TelnetEnable" functionality, which allows a magic packet to activate telnet service on the box.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.7
- CVSS vector
- CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N
- EPSS probability
- 0.22%
- CWE
- CWE-1242
- Published
- 2026-01-30
- Last modified
- 2026-03-12
Affected products
- NETGEAR NETGEAR products
Weakness type
Related vulnerabilities
- CVE-2023-3634 — Festo: MSE6-C2M/D2M/E2M Incomplete User Documentation of Remote Accessible Functions
- CVE-2025-41756 — Arbitrary Write with ubr-editfile
- CVE-2025-41754 — Arbitrary Read with ubr-editfile
- CVE-2021-4469 — Denver SHO-110 IP Camera Unauthenticated Snapshot Access
- CVE-2025-12176 — Undocumented Administrative Accounts
- CVE-2017-20204 — DBLTek GoIP Telnet Admin Interface Undocumented Backdoor
- CVE-2025-55050 — CWE-1242: Inclusion of Undocumented Features
- CVE-2025-52548 — Enabling SSH and Shellinabox on the vulnerable machine