Vulnerability Details CVE-2025-52080
In Netgear XR300 V1.0.3.38_10.3.30, a stack-based buffer overflow vulnerability exists in the HTTPD service through the usb_device.cgi endpoint. The vulnerability occurs when processing POST requests containing the share_name parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 5.9%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2025-52080
-
cpe:2.3:h:netgear:xr300:-
-
cpe:2.3:o:netgear:xr300_firmware:v1.0.3.38_10.3.30