CVE-2013-2751

NETGEAR ReadyNAS <4.1.12 & <4.2.24 - Code Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2013-2751. PoCs published by Metasploit, Craig Young, hdm, juan vazquez, including Metasploit module exploits/linux/http/netgear_readynas_exec.

AI-analyzed exploit summary This Metasploit module exploits a Perl code injection vulnerability in NETGEAR ReadyNAS devices via the np_handler.pl component, allowing unauthenticated remote command execution through insecure usage of the eval() function.

Description

Eval injection vulnerability in frontview/lib/np_handler.pl in the FrontView web interface in NETGEAR ReadyNAS RAIDiator before 4.1.12 and 4.2.x before 4.2.24 allows remote attackers to execute arbitrary Perl code via a crafted request, related to the "forgot password workflow."

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotehardware
https://www.exploit-db.com/exploits/29815

This Metasploit module exploits a Perl code injection vulnerability in NETGEAR ReadyNAS devices via the np_handler.pl component, allowing unauthenticated remote command execution through insecure usage of the eval() function.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: NETGEAR ReadyNAS 4.2.23 and 4.1.11
No auth needed
Prerequisites: Network access to the target device · SSL enabled on port 443
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC MANUAL
by Craig Young, hdm, juan vazquez · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/netgear_readynas_exec.rb

This Metasploit module exploits a Perl code injection vulnerability in NETGEAR ReadyNAS 4.2.23 and 4.1.11 via the np_handler.pl component. It leverages insecure usage of the eval() function to execute arbitrary commands by injecting a Base64-encoded payload.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: NETGEAR ReadyNAS 4.2.23 and 4.1.11
No auth needed
Prerequisites: Network access to the target device · Perl eval() function accessible via HTTP request
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Patch, Vendor Advisory x_refsource_misc
http://www.readynas.com/?p=7002
Broken Link vdb-entry x_refsource_osvdb
http://www.osvdb.org/98826
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/29815

Scores

EPSS 0.7160
EPSS Percentile 99.3%

Details

CWE
CWE-94
Status published
Products (1)
netgear/raidiator 4.1 - 4.1.12
Published Dec 12, 2013
Tracked Since Feb 18, 2026