Rewterz
DarkCrystal RAT aka DCRat – Active IOCs
February 6, 2025
Rewterz
NJRAT – Active IOCs
February 6, 2025

CVE-2025-25246 – NETGEAR XR1000, XR1000v2, and XR500 Vulnerability

Severity

High

Analysis Summary

CVE-2025-25246

A remote code execution vulnerability affects NETGEAR XR1000, XR1000v2, and XR500 routers running specific firmware versions. This vulnerability allows unauthenticated users to execute arbitrary code on the affected devices remotely.

Impact

  • Code Execution

Indicators of Compromise

CVE

  • CVE-2025-25246

Affected Vendors

  • NETGEAR

Affected Products

  • NETGEAR XR1000
  • NETGEAR XR1000v2
  • NETGEAR XR500

Remediation

Refer to NETGEAR Security Advisory for patch, upgrade, or suggested workaround information.

NETGEAR Security Advisory