CVE-2023-38925

HIGH

Netgear - Buffer Overflow

Title source: llm
STIX 2.1

Description

Netgear DC112A 1.0.0.64, EX6200 1.0.3.94 and R6300v2 1.0.4.8 were discovered to contain a buffer overflow via the http_passwd parameter in password.cgi.

Scores

CVSS v3 8.8
EPSS 0.2262
EPSS Percentile 95.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-120
Status published
Products (3)
netgear/dc112a_firmware 1.0.0.64
netgear/ex6200_firmware 1.0.3.94
netgear/r6300v2_firmware 1.0.4.8
Published Aug 07, 2023
Tracked Since Feb 18, 2026