CVE-2025-52082: Buffer Overflow
In Netgear XR300 V1.0.3.3810.3.30, a stack-based buffer overflow exists in the HTTPD service through the usbdevice.cgi endpoint. The vulnerability occurs when processing POST requests containing the readaccess parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52082?
CVE-2025-52082 is classified as a high severity vulnerability due to its potential to cause a stack-based buffer overflow.
How does CVE-2025-52082 affect the Netgear XR300?
CVE-2025-52082 affects the Netgear XR300 by allowing attackers to exploit the HTTPD service through the usb_device.cgi endpoint.
What are the potential impacts of CVE-2025-52082?
The potential impacts of CVE-2025-52082 include remote code execution and system compromise due to the buffer overflow.
How do I fix CVE-2025-52082?
To fix CVE-2025-52082, update the Netgear XR300 firmware to the latest version provided by the manufacturer.
Is there a workaround for CVE-2025-52082 if I can't update?
A possible workaround for CVE-2025-52082 is to restrict access to the usb_device.cgi endpoint or disable the HTTPD service temporarily.