Metrics
Affected Vendors & Products
Wed, 30 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 30 Apr 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Netgear WG302v2 up to 5.2.9 and classified as critical. Affected by this issue is the function ui_get_input_value. The manipulation of the argument host leads to command injection. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Netgear WG302v2 ui_get_input_value command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-30T17:31:04.131Z
Updated: 2025-04-30T18:12:17.638Z
Reserved: 2025-04-30T12:58:57.697Z
Link: CVE-2025-4135

Updated: 2025-04-30T18:12:14.378Z

Status : Awaiting Analysis
Published: 2025-04-30T18:15:48.400
Modified: 2025-05-02T13:53:40.163
Link: CVE-2025-4135

No data.