CVE-2023-38925: NETGEAR DC112A Firmware

High severity, CVSS 8.8. EPSS: 15.2% chance of exploitation in the next 30 days.

Netgear DC112A 1.0.0.64, EX6200 1.0.3.94 and R6300v2 1.0.4.8 were discovered to contain a buffer overflow via the http_passwd parameter in password.cgi.

Affected products

  • NETGEAR DC112A Firmware: version 1.0.0.64 only
  • NETGEAR EX6200 Firmware: version 1.0.3.94 only
  • NETGEAR r6300v2 Firmware: version 1.0.4.8 only

Published 2023-08-07. Last modified 2026-06-17.