CVE-2025-12945

HIGH
7.2CVSS v3
CVSS v2
0.70% EPSS (exploit probability)
CWE-20CWE

Description

A vulnerability in NETGEAR Nighthawk R7000P routers lets an authenticated admin execute OS command injections due to improper input validation.



This issue affects R7000P: through 1.3.3.154.

CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch?
Netgear Netgear Nighthawk R7000 No

External references