High severity8.8NVD Advisory· Published Aug 7, 2023· Updated Jun 17, 2026
CVE-2023-38921
CVE-2023-38921
Description
Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the upgrade_handler function via the firmwareRestore and firmwareServerip parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:o:netgear:wag302v2_firmware:5.1.19:*:*:*:*:*:*:*
- cpe:2.3:o:netgear:wg302v2_firmware:5.2.9:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- github.com/FirmRec/IoT-Vulns/tree/main/netgear/upgrade_handlernvdThird Party Advisory
- www.netgear.com/about/security/nvdVendor Advisory
News mentions
0No linked articles in our index yet.