VYPR

Jwnr2000v2 Firmware

by Netgear

CVEs (5)

  • CVE-2025-4120HigApr 30, 2025
    risk 0.57cvss 8.8epss 0.01

    A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been classified as critical. Affected is the function sub_4238E8. The manipulation of the argument host leads to buffer overflow. It is possible to launch the attack remotely. The vendor was contacted early about…

  • CVE-2023-39550HigAug 7, 2023
    risk 0.57cvss 8.8epss 0.01

    Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the check_auth function.

  • CVE-2023-38922HigAug 7, 2023
    risk 0.57cvss 8.8epss 0.01

    Netgear JWNR2000v2 v1.0.0.11, XWN5001 v0.4.1.1, and XAVN2001v2 v0.4.0.7 were discovered to contain multiple buffer overflows via the http_passwd and http_username parameters in the update_auth function.

  • CVE-2025-4122MedApr 30, 2025
    risk 0.41cvss 6.3epss 0.03

    A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been rated as critical. Affected by this issue is the function sub_435E04. The manipulation of the argument host leads to command injection. The attack may be launched remotely. The vendor was contacted early about…

  • CVE-2025-4121MedApr 30, 2025
    risk 0.41cvss 6.3epss 0.03

    A vulnerability was found in Netgear JWNR2000v2 1.0.0.11. It has been declared as critical. Affected by this vulnerability is the function cmd_wireless. The manipulation of the argument host leads to command injection. The attack can be launched remotely. The vendor was…