Description
The NETGEAR WNR2000v5 router contains a buffer overflow in the hidden_lang_avi parameter when invoking the URL /apply.cgi?/lang_check.html. This buffer overflow can be exploited by an unauthenticated attacker to achieve remote code execution.
Published: 2017-01-30
Score: 9.8 Critical
EPSS: 91.1% High
KEV: Yes
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 22 Oct 2025 00:30:00 +0000


Tue, 21 Oct 2025 20:30:00 +0000


Tue, 21 Oct 2025 19:30:00 +0000


Tue, 04 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics kev

{'dateAdded': '2022-03-25'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Netgear D6100 D6100 Firmware D7000 D7000 Firmware D7800 D7800 Firmware Jnr1010v2 Jnr1010v2 Firmware Jnr3300 Jnr3300 Firmware Jwnr2010v5 Jwnr2010v5 Firmware R2000 R2000 Firmware R6100 R6100 Firmware R6220 R6220 Firmware R7500 R7500 Firmware R7500v2 R7500v2 Firmware Wndr3700v4 Wndr3700v4 Firmware Wndr3800 Wndr3800 Firmware Wndr4300 Wndr4300 Firmware Wndr4300v2 Wndr4300v2 Firmware Wndr4500v3 Wndr4500v3 Firmware Wndr4700 Wndr4700 Firmware Wnr1000v2 Wnr1000v2 Firmware Wnr1000v4 Wnr1000v4 Firmware Wnr2000v3 Wnr2000v3 Firmware Wnr2000v4 Wnr2000v4 Firmware Wnr2000v5 Wnr2000v5 Firmware Wnr2020 Wnr2020 Firmware Wnr2050 Wnr2050 Firmware Wnr2200 Wnr2200 Firmware Wnr2500 Wnr2500 Firmware Wnr614 Wnr614 Firmware Wnr618 Wnr618 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-10-21T23:55:46.735Z

Reserved: 2017-01-29T00:00:00.000Z

Link: CVE-2016-10174

cve-icon Vulnrichment

Updated: 2024-08-06T03:14:42.372Z

cve-icon NVD

Status : Analyzed

Published: 2017-01-30T04:59:00.157

Modified: 2026-04-21T16:26:40.373

Link: CVE-2016-10174

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses