VYPR

WG302v2

by Netgear

CVEs (2)

  • CVE-2025-4135Apr 30, 2025
    risk 0.00cvss epss 0.02

    A vulnerability was found in Netgear WG302v2 up to 5.2.9 and classified as critical. Affected by this issue is the function ui_get_input_value. The manipulation of the argument host leads to command injection. The attack may be launched remotely. The vendor was contacted early…

  • CVE-2023-38921Aug 7, 2023
    risk 0.00cvss epss 0.01

    Netgear WG302v2 v5.2.9 and WAG302v2 v5.1.19 were discovered to contain multiple command injection vulnerabilities in the upgrade_handler function via the firmwareRestore and firmwareServerip parameters.