Metrics
Affected Vendors & Products
Mon, 23 Jun 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Netgear
Netgear wg302v2 Netgear wg302v2 Firmware |
|
CPEs | cpe:2.3:h:netgear:wg302v2:-:*:*:*:*:*:*:* cpe:2.3:o:netgear:wg302v2_firmware:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Netgear
Netgear wg302v2 Netgear wg302v2 Firmware |
Wed, 30 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 30 Apr 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Netgear WG302v2 up to 5.2.9 and classified as critical. Affected by this issue is the function ui_get_input_value. The manipulation of the argument host leads to command injection. The attack may be launched remotely. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Netgear WG302v2 ui_get_input_value command injection | |
Weaknesses | CWE-74 CWE-77 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-30T17:31:04.131Z
Updated: 2025-04-30T18:12:17.638Z
Reserved: 2025-04-30T12:58:57.697Z
Link: CVE-2025-4135

Updated: 2025-04-30T18:12:14.378Z

Status : Analyzed
Published: 2025-04-30T18:15:48.400
Modified: 2025-06-23T15:13:00.287
Link: CVE-2025-4135

No data.