CVE-2025-4116

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 30, 2025
Updated: May 2, 2025
CWE ID 119
CWE ID 120

Summary

CVE-2025-4116 is a critical buffer overflow vulnerability affecting the Netgear JWNR2000v2 1.0.0.11 firmware. The issue lies in the get_cur_lang_ver function, which can be exploited when the host argument is manipulated. This vulnerability allows remote attackers to launch a buffer overflow attack, potentially leading to serious system compromises. Despite early disclosure, Netgear has yet to respond to the vendor's efforts to address this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share