Actively Exploited in the Wild

This vulnerability is being actively exploited in the wild.

Netgear EX3700 Stack-Based Buffer Overflow Vulnerability

Vulnerability

A critical stack-based buffer overflow vulnerability has been identified in the Netgear EX3700 wireless range extender, affecting versions prior to 1.0.0.88. The vulnerability resides in the function sub_41619C within the file /mtd. This issue can be exploited remotely, leading to potential unauthorized access or manipulation of the device.

Impact

Exploitation of this vulnerability allows for a stack-based buffer overflow, which could be used to execute arbitrary code or cause a denial-of-service condition on the device.

Reproduction

The vulnerability can be reproduced by sending a specially crafted input to the affected function, sub_41619C, in the /mtd file. This input must be formatted to exploit the buffer overflow condition, overwriting the stack and potentially allowing for arbitrary code execution.

Remediation

Users are advised to upgrade to version 1.0.0.98 to address this vulnerability.

Added: Jun 10, 2025, 4:21 AM
Updated: Jun 10, 2025, 4:21 AM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
7.5
exploitability
6.6
remediation
7.7
relevance
0.2
threat
8.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.