FunJSQ, a third-party module integrated on some NETGEAR routers and Orbi WiFi Systems, exposes an HTTP server over the LAN interface of affected devices. This interface is vulnerable to unauthenticated arbitrary command injection through the funjsq_access_token parameter. This affects R6230 before 1.1.0.112, R6260 before 1.1.0.88, R7000 before 1.0.11.134, R8900 before 1.0.5.42, R9000 before 1.0.5.42, and XR300 before 1.0.3.72 and Orbi RBR20 before 2.7.2.26, RBR50 before 2.7.4.26, RBS20 before 2.7.2.26, and RBS50 before 2.7.4.26.
Conclusion & alert: CVE-2022-40619 is rated High Exploit Risk (75.2/100): CVSS High severity, with medium exploitation likelihood (EPSS 2.38%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
| EDB-ID | Source | Kind | Published | Link |
|---|---|---|---|---|
| — | nvd_ref | exploit_tag | Exploit-DB ↗ |
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-05-30 | 2.78% | 2.38% | -0.40% |
| 2 | 2026-05-22 | 2.07% | 2.78% | +0.71% |
| 3 | 2026-05-12 | — | 2.07% | — |
Full EPSS history (11 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.7 | 3.1 | HIGH |
|
2.2 | 5.5 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| netgear | rbr20_firmware | < 2.7.2.26 | cpe:2.3:o:netgear:rbr20_firmware:*:*:*:*:*:*:*:* |
| netgear | r6230_firmware | < 1.1.0.112 | cpe:2.3:o:netgear:r6230_firmware:*:*:*:*:*:*:*:* |
| netgear | r6260_firmware | < 1.1.0.88 | cpe:2.3:o:netgear:r6260_firmware:*:*:*:*:*:*:*:* |
| netgear | r7000_firmware | < 1.0.11.134 | cpe:2.3:o:netgear:r7000_firmware:*:*:*:*:*:*:*:* |
| netgear | r8900_firmware | < 1.0.5.42 | cpe:2.3:o:netgear:r8900_firmware:*:*:*:*:*:*:*:* |
| netgear | r9000_firmware | < 1.0.5.42 | cpe:2.3:o:netgear:r9000_firmware:*:*:*:*:*:*:*:* |
| netgear | rax120_firmware | < 1.2.8.40 | cpe:2.3:o:netgear:rax120_firmware:*:*:*:*:*:*:*:* |
| netgear | rax120v2_firmware | < 1.2.8.40 | cpe:2.3:o:netgear:rax120v2_firmware:*:*:*:*:*:*:*:* |
| netgear | xr300_firmware | < 1.0.3.72 | cpe:2.3:o:netgear:xr300_firmware:*:*:*:*:*:*:*:* |
| netgear | rbs20_firmware | < 2.7.2.26 | cpe:2.3:o:netgear:rbs20_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://kb.netgear.com/000065132/Security-Advisory-for-Vulnerabilities-in-FunJSQ-on-Some-Routers-and-Orbi-WiFi-Systems-PSV-2022-0117 | Vendor Advisory |
| https://www.onekey.com/resource/security-advisory-netgear-routers-funjsq-vulnerabilities | Exploit Third Party Advisory |