CVE-2025-12945

An improper input validation vulnerability in the NETGEAR Nighthawk R7000P (end of service) routers lets an authenticated administrator with local network access to the device, to execute OS command injections and make unauthorized modifications to the router software and functionality impacting its integrity. There is no additional impact to confidentiality or availability. This issue affects R7000P: through 1.3.3.154.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:netgear:r7000p_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:r7000p:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-12-09 17:15

Updated : 2026-08-26 17:16


NVD link : CVE-2025-12945

Mitre link : CVE-2025-12945

CVE.ORG link : CVE-2025-12945


JSON object : View

Products Affected

netgear

  • r7000p
  • r7000p_firmware
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo