cbcvebase.
CVE-2025-44650
published 2025-07-21

CVE-2025-44650: In Netgear R7000 V1.3.1.64_10.1.36 and EAX80 V1.0.1.70_1.0.2, the USERLIMIT_GLOBAL option is set to 0 in the bftpd.conf configuration file. This can cause DoS…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
In Netgear R7000 V1.3.1.64_10.1.36 and EAX80 V1.0.1.70_1.0.2, the USERLIMIT_GLOBAL option is set to 0 in the bftpd.conf configuration file. This can cause DoS attacks when unlimited users are connected.

Affected

2 ranges
VendorProductVersion rangeFixed in
netgeareax80_firmware
netgearr7000_firmware