cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-23690,https://securityvulnerability.io/vulnerability/CVE-2024-23690,Command Injection Vulnerability in Netgear FVS336Gv2 and FVS336Gv3 Routers,"The Netgear FVS336Gv2 and FVS336Gv3 routers are vulnerable to a command injection issue via the Telnet interface. This allows an authenticated attacker to execute arbitrary operating system commands with root privileges. By sending maliciously crafted 'util backup_configuration' commands, an attacker can gain unauthorized access, potentially leading to further exploitation of the device. Users are advised to disable Telnet and migrate to supported products to enhance their security.",Netgear,"Fvs336gv3,Fvs336gv2",7.2,HIGH,0.01,false,,false,false,false,,false,false,false,,2025-02-04T14:34:00.370Z,0 CVE-2016-10106,https://securityvulnerability.io/vulnerability/CVE-2016-10106,,"Directory traversal vulnerability in scgi-bin/platform.cgi on NETGEAR FVS336Gv3, FVS318N, FVS318Gv2, and SRX5308 devices with firmware before 4.3.3-8 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the thispage parameter, as demonstrated by reading the /etc/shadow file.",Netgear,Fvs336gv3 Firmware,6.5,MEDIUM,0.0017099999822676182,false,,false,false,false,,,false,false,,2017-01-03T06:34:00.000Z,0