Netgear FVS336Gv3
cpe:2.3:h:netgear:fvs336gv3:*:*:*:*:*:*:*, +1 more
- <= 4.3.5-3
A command injection vulnerability has been identified in the Telnet interface of the Netgear FVS336Gv2 and FVS336Gv3 routers, both of which are end-of-life products. This vulnerability allows authenticated, remote attackers to execute arbitrary operating system commands as root. The issue arises when crafted 'util backup_configuration' commands are sent via Telnet.
Exploitation of this vulnerability allows for arbitrary OS command execution with root privileges.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.