20030209 Bug in Netgear FM114P Wireless Router firmwaremailing list
http://www.securityfocus.com/archive/1/311160 CVE-2003-1427
Netgear FM114P Wireless Firewall - File Disclosure
Record summary
CVE-2003-1427 has a selected CVSS score of 6.4; EIP currently links 1 catalogued exploit.
Description
Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to read arbitrary files, such as the netgear.cfg configuration file, via a hex-encoded (%2e%2e%2f) ../ (dot dot slash) in the port parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBNetgear FM114P Wireless Firewall - File DisclosureExploitDB exploitby sticklerNot analyzed1 file
References
46807vdb entry
http://www.securityfocus.com/bid/6807 netgear-fm114p-directory-traversal(11279)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/11279 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2003-1427