CVE-2025-4116: Netgear JWNR2000v2 get_cur_lang_ver buffer overflow
Published Apr 30, 2025
·Updated
A vulnerability, which was classified as critical, has been found in Netgear JWNR2000v2 1.0.0.11. Affected by this issue is the function getcurlangver. The manipulation of the argument host leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
3 affected components
Netgear JWNR2000v2
All of the following
Netgear Jwnr2000 Firmware=1.0.0.11
Netgear JWNR2000=v2
Event History
Apr 30, 2025
CVE Published
via MITRE·12:31 PM
Data Sourced
via MITRE·12:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-4116?
CVE-2025-4116 is classified as a critical vulnerability.
2
What type of vulnerability is CVE-2025-4116?
CVE-2025-4116 is a buffer overflow vulnerability.
3
How can CVE-2025-4116 be exploited?
CVE-2025-4116 can be exploited remotely through manipulation of the host argument.
4
What software is affected by CVE-2025-4116?
CVE-2025-4116 affects the Netgear JWNR2000v2 firmware version 1.0.0.11.
5
How do I fix CVE-2025-4116?
To fix CVE-2025-4116, update the Netgear JWNR2000v2 to the latest firmware version provided by the vendor.