9.8
CVSSv3

CVE-2022-29383

Published: 13/05/2022 Updated: 24/05/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

NETGEAR ProSafe SSL VPN firmware FVS336Gv2 and FVS336Gv3 exists to contain a SQL injection vulnerability via USERDBDomains.Domainname at cgi-bin/platform.cgi.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

netgear ssl312_firmware fvs336gv2

netgear ssl312_firmware fvs336gv3

Vendor Advisories

Check Point Reference: CPAI-2022-2004 Date Published: 22 Jan 2024 Severity: Critical ...

Github Repositories

NETGEAR ProSafe SSL VPN CVE-2022-29383 to githubcom/badboycxcc/Netgear-ssl-vpn-20211222-CVE-2022-29383 SQL injection vulnerability exists in scgi-bin/platformcgi Firmware version: FVS318Gv2 and FVS318N FVS318Gv2 FVS318N

Netgear-ssl-vpn-20211222 CVE-2022-29383 NETGEAR ProSafe SSL VPN SQL injection vulnerability exists in scgi-bin/platformcgi Firmware version: FVS336Gv2 - FVS336Gv3 sqlmap command SQL Injection Vulnerability : USERDBDomainsDomainname