github.comrelated
https://github.com/jylsec/vuldb/blob/main/Netgear/netgear_JWNR2000v2/Buffer_overflow-get_cur_lang_ver-StringTable_NonEnglish_Ver/README.md CVE-2025-4116
HIGH
Netgear JWNR2000v2 get_cur_lang_ver buffer overflow
Record summary
CVE-2025-4116 has a selected CVSS score of 8.7 (high).
Description
A vulnerability, which was classified as critical, has been found in Netgear JWNR2000v2 1.0.0.11. Affected by this issue is the function get_cur_lang_ver. The manipulation of the argument host leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 30, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
JWNR2000v2Browse Netgear / JWNR2000v2 | CVE List | 1.0.0.11 | affected |
References
6nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2025-4116 VDB-306596 | CTI Indicators (IOB, IOC, IOA)signaturepermissions required
https://vuldb.com/?ctiid.306596 VDB-306596 | Netgear JWNR2000v2 get_cur_lang_ver buffer overflowvdb entryTechnical description
https://vuldb.com/?id.306596 Submit #560770 | Netgear JWNR2000v2 1.0.0.11 Buffer OverflowThird-party advisory
https://vuldb.com/?submit.560770 netgear.comproduct
https://www.netgear.com/