PT-2025-19968 · NetGear · Netgear Ex8000

Published

2025-05-06

·

Updated

2025-05-06

·

CVE-2025-45492

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Netgear EX8000 version 1.0.0.126
Description The issue is related to Command Injection via the Iface parameter in the action wireless function. This allows for potential exploitation.
Recommendations For Netgear EX8000 version 1.0.0.126, consider restricting access to the action wireless function until a patch is available. Avoid using the Iface parameter in the affected function to minimize the risk of exploitation.

Exploit

Fix

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2025-45492

Affected Products

Netgear Ex8000