VYPR
High severity7.5NVD Advisory· Published May 12, 2025· Updated Jun 17, 2026

CVE-2025-45835

CVE-2025-45835

Description

A null pointer dereference vulnerability was discovered in Netis WF2880 v2.1.40207. The vulnerability exists in the FUN_004904c8 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the environment variable value CONTENT_LENGTH, causing the program to crash and potentially leading to a denial-of-service (DoS) attack.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Netis/WF2880llm-fuzzy2 versions
    2.1.40207+ 1 more
    • (no CPE)range: 2.1.40207
    • (no CPE)
  • cpe:2.3:o:netis-systems:wf2880_firmware:2.1.40207:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.