CVE-2025-4148

Published May 1, 2025

Last updated a month ago

Overview

Description
A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function sub_503FC. The manipulation of the argument host leads to buffer overflow. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way.
Source
cna@vuldb.com
NVD status
Analyzed

Risk scores

CVSS 4.0

Type
Secondary
Base score
8.7
Impact score
-
Exploitability score
-
Vector string
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Severity
HIGH

CVSS 3.1

Type
Primary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

CVSS 2.0

Type
Secondary
Base score
9
Impact score
10
Exploitability score
8
Vector string
AV:N/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

cna@vuldb.com
CWE-119
nvd@nist.gov
CWE-120

Social media

Hype score
Not currently trending
  1. Netgear EX6200 の深刻な脆弱性 CVE-2025-4148/4149/4150:パッチ未適用とリモート侵害の恐れ https://t.co/UKDS1eTbjA Netgear EX6200 に複数の脆弱性が発生していますが、パッチは未適用という状況です。ご利用のチームは、

    @iototsecnews

    14 May 2025

    20 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. ب برای مودم های Netgear EX6200 سه آسیب پذیری با کدهای شناسایی CVE-2025-4148 و CVE-2025-4149 و CVE-2025-4150 منتشر شده است که به هکرها امکان دسترسی کامل به مودم و سرقت اطلاعات و آلوده

    @AmirHossein_sec

    4 May 2025

    28 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. 🚨NSOC Advisory🚨CVE-2025-4148/4149/4150 (CVSS V3.1 8.8) in EX6200 firmware ≤ 1.0.3.94 lets remote attackers execute code and steal data disable remote management, isolate extenders on a guest VLAN, monitor logs for anomalies, and apply the firmware update once its releas

    @cirtgovjm

    1 May 2025

    208 Impressions

    2 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 CVE-2025-4148 🔴 HIGH (8.7) 🏢 Netgear - EX6200 🏗️ 1.0.3.94 🔗 https://t.co/wAHoHLo3jD 🔗 https://t.co/BJe0SUCzuH 🔗 https://t.co/gfTvBYCGuZ 🔗 https://t.co/VhNPlsWwBg 🔗 https://t.co/7bUbFOnm4c #CyberCron #VulnAlert #InfoSec https://t.co/l7YS49Vq2f

    @cybercronai

    1 May 2025

    11 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. Netgear製EX6200無線ルーターに存在する3件の重大な脆弱性(CVE-2025-4148、4149、4150)が公開される。ホスト引数の処理に関わる関数でバッファオーバーフローを引き起こす。遠隔から任意コード実行が可能で、認

    @yousukezan

    1 May 2025

    580 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2025-4148 A vulnerability was found in Netgear EX6200 1.0.3.94 and classified as critical. Affected by this issue is the function sub_503FC. The manipulation of the argument host… https://t.co/4O8zY8HNw1

    @CVEnew

    1 May 2025

    434 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2025-4148: HIGH] Critical buffer overflow vulnerability discovered in Netgear EX6200 1.0.3.94 impacting function sub_503FC, allowing remote attacks through manipulation of host argument. Vendor unresponsi...#cve,CVE-2025-4148,#cybersecurity https://t.co/HLJfCYjhzX https://t.

    @CveFindCom

    1 May 2025

    14 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations