CVE-2025-45492: NETGEAR EX8000 Firmware

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

Netgear EX8000 V1.0.0.126 is vulnerable to Command Injection via the Iface parameter in the action_wireless function.

Affected products

  • NETGEAR EX8000 Firmware: version 1.0.0.126 only

Published 2025-05-06. Last modified 2026-06-17.