Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-21151 | The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as root over Telnet by sending crafted "util backup_configuration" commands. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://vulncheck.com/advisories/netgear-fvs336g-rce |
|
Sat, 22 Nov 2025 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Netgear
Netgear fvs336gv2 Netgear fvs336gv3 |
|
| CPEs | cpe:2.3:a:netgear:fvs336gv2:*:*:*:*:*:*:*:* cpe:2.3:h:netgear:fvs336gv3:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Netgear
Netgear fvs336gv2 Netgear fvs336gv3 |
Tue, 15 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 04 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 04 Feb 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interface. An authenticated and remote attacker can execute arbitrary OS commands as root over Telnet by sending crafted "util backup_configuration" commands. | |
| Title | EOL Netgear FVS336v3 Telnet Configuration Backup Command Injection | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-11-22T12:19:16.575Z
Reserved: 2024-01-19T17:35:14.201Z
Link: CVE-2024-23690
Updated: 2025-02-04T14:55:41.892Z
Status : Received
Published: 2025-02-04T15:15:17.973
Modified: 2025-02-04T15:15:17.973
Link: CVE-2024-23690
No data.
OpenCVE Enrichment
No data.
EUVD