CVE-2022-4390

CRITICAL

A network misconfiguration is present in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series of routers. IPv6 is enabled for the WAN interface by default on these devices. While there are...

Affects 2 products across 1 vendor.

BCS7.26
CVSS 3.110.0
EPSS0.9%
Percentile56th
PatchPatched
CVSS Vector — Plain English Remotely exploitable over the network, low complexity, no authentication required, no user interaction needed, can impact systems beyond the vulnerable component, full confidentiality impact, full integrity impact, full availability impact.
◆ SAGE Intelligence — CITED Relevance Research Team

A network misconfiguration in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series routers allows arbitrary access to any service due to IPv6 being enabled on the WAN interface without proper firewall restrictions.

BSID: BS-2022-GLOBAL-063954-C • Model: /workspace/models/qwen2.5-coder-32b-instruct-bf16 • Confidence: HIGH

Is this CVE in your environment?

BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.

Check My Environment →
Frequently Asked Questions
What is CVE-2022-4390?
A network misconfiguration in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series routers allows arbitrary access to any service due to IPv6 being enabled on the WAN interface without proper firewall restrictions.
What is the CVSS score for CVE-2022-4390?
CVE-2022-4390 has CVSS 10.0 (Critical). Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H. EPSS: 0.9%.
Is CVE-2022-4390 actively exploited?
No confirmed active exploitation of CVE-2022-4390 as of 2026-05-30.
How do I remediate CVE-2022-4390?
Priority: IMMEDIATE. Advisory: https://www.synacktiv.com/en/publications/cool-vulns-dont-live-long-netgear-and-pwn2own.html
What systems are affected by CVE-2022-4390?
CVE-2022-4390 affects: Netgear, Netgear.
Vulnerability Details
CVE IDCVE-2022-4390
BSIDBS-2022-GLOBAL-063954-C BreachSpider Global ID
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Published2022-12-09
Last Modified2025-04-14
ICS Relevance85%
Domains
NETWORK-INFRA
SourceNVD
Official Description

A network misconfiguration is present in versions prior to 1.0.9.90 of the NETGEAR RAX30 AX2400 series of routers. IPv6 is enabled for the WAN interface by default on these devices. While there are firewall restrictions in place that define access restrictions for IPv4 traffic, these restrictions do not appear to be applied to the WAN interface for IPv6. This allows arbitrary access to any services running on the device that may be inadvertently listening via IPv6, such as the SSH and Telnet servers spawned on ports 22 and 23 by default. This misconfiguration could allow an attacker to interact with services only intended to be accessible by clients on the local network.

Source: NIST NVD / MITRE CVE Database

Attack Vector Analysis — CITED Relevance

The vulnerability arises from the default configuration of the router, where IPv6 is enabled on the WAN interface without corresponding firewall rules. This misconfiguration allows attackers to bypass intended security measures and gain unauthorized access to services on the network.

Exploitation Likelihood: CRITICAL

Affected Products
VendorProductFixed Version
Netgear Ax2400 Firmware
Netgear Ax2400
Remediation
View Vendor Advisory →

Remediation Priority: IMMEDIATE

Threat Intelligence
● Threat Intelligence Validated: August 2026 | Threat Age: 1336 Days
CISA KEVNot in KEV catalog
Public ExploitNot confirmed
PoC CodeNot confirmed
SAGE Enrichment Record — provenance & audit hash
Model/workspace/models/qwen2.5-coder-32b-instruct-bf16
ConfidenceHIGH
Enriched At2026-05-24
SHA-512 Audit Hashc3a136b345b090368b993cb2dad6e191186f723e78f77123b2b32454cfd136b4a79fa02ae3730f653278d70d9b908a116ec962ade632c0b003417ca6678edc30
Related CVEs affecting Netgear
CVE-2006-1002 10.0 NETGEAR WGT624 Wireless DSL router has a default account of super_username "G... CVE-2007-4361 10.0 NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta create... CVE-2006-6059 10.0 Buffer overflow in MA521nd5.SYS driver 5.148.724.2003 for NetGear MA521 PCMCI... CVE-2013-2751 10.0 Eval injection vulnerability in frontview/lib/np_handler.pl in the FrontView ... CVE-2006-5972 10.0 Stack-based buffer overflow in WG111v2.SYS in NetGear WG111v2 wireless adapte...
View all Netgear CVEs →

Critical Severity - Know Your Exposure

A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.

Check Your Assets Free →