CVE-2025-50613

7.5

Netis · WF2880

A buffer overflow in the Netis WF2880 cgitest.cgi file allows unauthenticated attackers to trigger a crash, resulting in a Denial of Service.

Executive summary

A critical buffer overflow vulnerability in the Netis WF2880 router enables unauthenticated attackers to cause a persistent denial of service condition.

Vulnerability

The flaw exists in the FUN_00475e1c function within the cgitest.cgi file, where improper handling of the wds_key_wep parameter leads to a buffer overflow. Because the attack vector is network-based and requires no authentication or user interaction, it is highly accessible to remote actors.

Business impact

Successful exploitation of this vulnerability results in a Denial of Service, rendering the affected networking hardware unavailable. Given the CVSS score of 7.5, this high severity issue poses a significant risk to operational continuity, as network outages can disrupt all dependent business services and communication channels.

Remediation

Immediate Action: Monitor for official firmware updates from the vendor and apply them as soon as they become available to patch the vulnerable function.

Proactive Monitoring: Review system and firewall logs for unusual traffic patterns directed toward the cgitest.cgi endpoint, specifically looking for abnormally long payloads in the wds_key_wep parameter.

Compensating Controls: Implement strict access control lists on the network perimeter to restrict access to the web management interface of the device to trusted management IP addresses only.

Exploitation status

Public Exploit Available: Yes, a proof-of-concept is documented in the referenced GitHub repository.

Analyst recommendation

The presence of a public proof-of-concept elevates the risk of this vulnerability, making it an attractive target for automated scanning and exploitation. Organizations utilizing the Netis WF2880 should prioritize restricting remote access to the device management interface immediately until a formal firmware patch is released and verified.

More Netis CVEs

Sources