CVE-2022-40620 Details
Description
FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, does not properly validate TLS certificates when downloading update packages through its auto-update mechanism. An attacker (suitably positioned on the network) could intercept the update request and deliver a malicious update package in order to gain arbitrary code execution on affected devices. This affects R6230 before 1.1.0.112, R6260 before 1.1.0.88, R7000 before 1.0.11.134, R8900 before 1.0.5.42, R9000 before 1.0.5.42, and XR300 before 1.0.3.72 and Orbi RBR20 before 2.7.2.26, RBR50 before 2.7.4.26, RBS20 before 2.7.2.26, and RBS50 before 2.7.4.26.
A vulnerability in the FunJSQ module, integrated into certain NETGEAR routers and Orbi WiFi Systems, has been identified. This issue arises because the module fails to properly validate TLS certificates when downloading update packages through its auto-update feature. As a result, an attacker with access to the network could intercept the update request and deliver a malicious package, leading to arbitrary code execution on the affected device. The vulnerability impacts NETGEAR router models R6230, R6260, R7000, R8900, R9000, and XR300, as well as Orbi models RBR20, RBR50, RBS20, and RBS50.
Users are advised to update their NETGEAR devices to the latest firmware version. Instructions for downloading the latest firmware can be found on the NETGEAR Support website.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jan 29, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-295 | Improper Certificate Validation | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| netgear rbr20 firmware | < 2.7.2.26 |
CPE
Remediation
| |
| netgear rbr20 | All versions |
CPE
Remediation
| |
| netgear r6230 firmware | < 1.1.0.112 |
CPE
Remediation
| |
| netgear r6230 | All versions |
CPE
Remediation
| |
| netgear r6260 firmware | < 1.1.0.88 |
CPE
Remediation
| |
| netgear r6260 | All versions |
CPE
Remediation
| |
| netgear r7000 firmware | < 1.0.11.134 |
CPE
Remediation
| |
| netgear r7000 | All versions |
CPE
Remediation
| |
| netgear r8900 firmware | < 1.0.5.42 |
CPE
Remediation
| |
| netgear r8900 | All versions |
CPE
Remediation
| |
| netgear r9000 firmware | < 1.0.5.42 |
CPE
Remediation
| |
| netgear r9000 | All versions |
CPE
Remediation
| |
| netgear rax120 firmware | < 1.2.8.40 |
CPE
Remediation
| |
| netgear rax120 | All versions |
CPE
Remediation
| |
| netgear rax120v2 firmware | < 1.2.8.40 |
CPE
Remediation
| |
| netgear rax120v2 | All versions |
CPE
Remediation
| |
| netgear xr300 firmware | < 1.0.3.72 |
CPE
Remediation
| |
| netgear xr300 | All versions |
CPE
Remediation
| |
| netgear rbs20 firmware | < 2.7.2.26 |
CPE
Remediation
| |
| netgear rbs20 | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Mar 9, 2026 | Initial Analysis | [email protected] |
| Jan 29, 2026 | CVE Modified | CISA-ADP |
| Jan 28, 2026 | New CVE Received | [email protected] |