CVE

Id
39693  
CVE No.
CVE-2009-2258  
Status
Candidate  
Description
Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage parameter.  
Phase
Assigned (20090629)  
Votes
None (candidate not yet proposed)  
Comments