CVE-2022-29383
NETGEAR ssl312_firmware Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Record summary
CVE-2022-29383 has a selected CVSS score of 9.8 (critical); EIP currently links 2 repository PoCs and 1 Nuclei template.
Description
NETGEAR ProSafe SSL VPN firmware FVS336Gv2 and FVS336Gv3 was discovered to contain a SQL injection vulnerability via USERDBDomains.Domainname at cgi-bin/platform.cgi.
Exploitation context
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
ssl312_firmwareBrowse NETGEAR / ssl312_firmware | VulnCheck | Version data not supplied | |
Proofs of concept
2Repository PoCs
GitHubbadboycxcc/Netgear-ssl-vpn-20211222-CVE-2022-29383Repository PoCby badboycxccStars: 25Not analyzed4 files
GitHubcxaqhq/netgear-to-CVE-2022-29383Repository PoCby cxaqhqStars: 0Not analyzed5 files
Nuclei templates
1ProjectDiscoveryCRITICALNETGEAR ProSafe SSL VPN firmware - SQL InjectionCVSS 9.8
NETGEAR ProSafe SSL VPN multiple firmware versions were discovered to contain a SQL injection vulnerability via USERDBDomains.Domainname at cgi-bin/platform.cgi.
Impact
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary SQL commands, potentially leading to unauthorized access, data leakage, or denial of service.
Remediation
Apply the latest firmware update provided by NETGEAR to mitigate this vulnerability.
Source: ProjectDiscovery