CVE-2025-50635: Null Pointer Dereference
A null pointer dereference vulnerability was discovered in Netis WF2780 v2.2.35445. The vulnerability exists in the FUN0048a728 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the CONTENTLENGTH variable, causing the program to crash and potentially leading to a denial-of-service (DoS) attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-50635?
CVE-2025-50635 is classified as a medium severity vulnerability due to its potential to cause application crashes.
How do I fix CVE-2025-50635?
To remediate CVE-2025-50635, ensure that you update Netis WF2780 to the latest firmware version that addresses this vulnerability.
What type of vulnerability is CVE-2025-50635?
CVE-2025-50635 is a null pointer dereference vulnerability that can lead to application instability.
Who is affected by CVE-2025-50635?
CVE-2025-50635 affects devices running Netis WF2780 firmware version v2.2.35445.
What can an attacker achieve with CVE-2025-50635?
An attacker can exploit CVE-2025-50635 to crash the application, leading to potential denial of service.