cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-29383,https://securityvulnerability.io/vulnerability/CVE-2022-29383,SQL Injection Vulnerability in NETGEAR ProSafe SSL VPN Firmware,"The NETGEAR ProSafe SSL VPN firmware versions FVS336Gv2 and FVS336Gv3 have a SQL injection vulnerability located within USERDBDomains.Domainname at cgi-bin/platform.cgi. This flaw could allow attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive information and the ability to execute administrative commands on the device.",Netgear,Ssl312 Firmware,9.8,CRITICAL,0.4383299946784973,false,,false,false,true,2021-12-26T13:33:16.000Z,true,false,false,,2022-05-13T12:49:40.000Z,0 CVE-2009-0680,https://securityvulnerability.io/vulnerability/CVE-2009-0680,,"cgi-bin/welcome/VPN_only in the web interface in Netgear SSL312 allows remote attackers to cause a denial of service (device crash) via a crafted query string, as demonstrated using directory traversal sequences.",Netgear,Ssl312,,,0.05333999916911125,false,,false,false,false,,,false,false,,2009-02-22T22:00:00.000Z,0 CVE-2007-5562,https://securityvulnerability.io/vulnerability/CVE-2007-5562,,Cross-site scripting (XSS) vulnerability in cgi-bin/welcome (aka the login page) in Netgear SSL312 PROSAFE SSL VPN-Concentrator 25 allows remote attackers to inject arbitrary web script or HTML via the err parameter in the context of an error page.,Netgear,Ssl312,,,0.05460000038146973,false,,false,false,false,,,false,false,,2007-10-18T20:00:00.000Z,0