PT-2025-19968 · NetGear · Netgear Ex8000

CVE-2025-45492

·

Published

2025-05-06

·

Updated

2025-05-06

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Netgear EX8000 version 1.0.0.126
Description The issue is related to Command Injection via the Iface parameter in the action wireless function. This allows for potential exploitation.
Recommendations For Netgear EX8000 version 1.0.0.126, consider restricting access to the action wireless function until a patch is available. Avoid using the Iface parameter in the affected function to minimize the risk of exploitation.

Exploit

Fix

Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-45492

Affected Products

Netgear Ex8000