GitHub Projects at Risk Due to Insecure Path Handling
June 4, 2025Multiple D-Link DCS-932L Vulnerabilities
June 4, 2025GitHub Projects at Risk Due to Insecure Path Handling
June 4, 2025Multiple D-Link DCS-932L Vulnerabilities
June 4, 2025Severity
High
Analysis Summary
CVE-2025-5495
A vulnerability was found in Netgear WNR614. It has been classified as critical. This affects an unknown part of the component URL Handler. The manipulation with the input %00currentsetting.htm leads to improper authentication. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This issue appears to have been circulating as an 0day since 2024.
Impact
- Security Bypass
Indicators of Compromise
CVE
CVE-2025-5495
Affected Vendors
- NETGEAR
Affected Products
- NETGEAR WNR614 Firmware - 1.1.0.28 1.0.1WW
Remediation
Refer to NETGEAR Website for patch, upgrade, or suggested workaround information.