PT-2025-10025 · Manageengine · Zoho Manageengine Adselfservice Plus

Xiaobor123

·

Published

2025-03-06

·

Updated

2025-07-16

·

CVE-2025-6510

CVSS v2.0
9.0
VectorAV:N/AC:L/Au:S/C:C/I:C/A:C

**Name of the Vulnerable Software and Affected Versions:**

Netgear EX6100 version 1.0.2.28 1.1.138

**Description:**

A critical vulnerability exists in the Netgear EX6100, specifically within the `sub 415EF8` function. This issue leads to a stack-based buffer overflow, potentially allowing remote attackers to execute arbitrary code by sending a specially crafted GET request. The exploit for this vulnerability has been publicly disclosed. This vulnerability affects products that are no longer supported by the maintainer.

**Recommendations:**

At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-07581
CVE-2025-6510

Affected Products

Zoho Manageengine Adselfservice Plus