Heap
01-07-09, 02:50
Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage parameter.
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2258)
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2258)