github.comrelated
https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-defualt_version_is_new-StringTable_NonEnglish_Ver/README.md CVE-2025-4115
HIGH
Netgear JWNR2000v2 default_version_is_new buffer overflow
Record summary
CVE-2025-4115 has a selected CVSS score of 8.7 (high).
Description
A vulnerability classified as critical was found in Netgear JWNR2000v2 1.0.0.11. Affected by this vulnerability is the function default_version_is_new. The manipulation of the argument host leads to buffer overflow. The attack can be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 30, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
JWNR2000v2Browse Netgear / JWNR2000v2 | CVE List | 1.0.0.11 | affected |
References
6nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-4115 VDB-306595 | CTI Indicators (IOB, IOC, IOA)signaturepermissions required
https://vuldb.com/?ctiid.306595 VDB-306595 | Netgear JWNR2000v2 default_version_is_new buffer overflowvdb entryTechnical description
https://vuldb.com/?id.306595 Submit #560769 | Netgear JWNR2000v2 1.0.0.11 Buffer OverflowThird-party advisory
https://vuldb.com/?submit.560769 netgear.comproduct
https://www.netgear.com/