Record summary

CVE-2009-2258 has a selected CVSS score of 7.8; EIP currently links 1 catalogued exploit.

Description

Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBNetgear DG632 Router - Authentication BypassExploitDB exploitby Tom NeavesNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

5