CVE-2025-25246
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
05/02/2025
Last modified:
05/02/2025
Description
NETGEAR XR1000 before 1.0.0.74, XR1000v2 before 1.1.0.22, and XR500 before 2.3.2.134 allow remote code execution by unauthenticated users.
Impact
Base Score 3.x
8.10
Severity 3.x
HIGH