Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-693p-9gm7-mm9r

Опубликовано: 04 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as root over Telnet by sending crafted "util backup_configuration" commands.

The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as root over Telnet by sending crafted "util backup_configuration" commands.

EPSS

Процентиль: 69%
0.00617
Низкий

7.2 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
около 1 года назад

The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as root over Telnet by sending crafted "util backup_configuration" commands.

CVSS3: 7.2
fstec
около 1 года назад

Уязвимость службы telnet CLI встроенного программного обеспечения маршрутизаторов NETGEAR FVS336Gv2 и FVS336Gv3, позволяющая нарушителю выполнять произвольные команды с привилегиями root

EPSS

Процентиль: 69%
0.00617
Низкий

7.2 High

CVSS3

Дефекты

CWE-78