Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the upgrade_handler function via the firmwareRestore and firmwareServerip parameters.
2023-08-07T19:15:10.393
2024-11-21T08:14:26.693
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | netgear | wg302v2_firmware | 5.2.9 | Yes |
Hardware | netgear | wg302v2 | - | No |
Operating System | netgear | wag302v2_firmware | 5.1.19 | Yes |
Hardware | netgear | wag302v2 | - | No |