Belkin N150 CVE-2014-2962 Directory Traversal Vulnerability
BID:68085
Info
Belkin N150 CVE-2014-2962 Directory Traversal Vulnerability
| Bugtraq ID: | 68085 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-2962 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 18 2014 12:00AM |
| Updated: | Jun 18 2014 12:00AM |
| Credit: | Aditya Lad |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Belkin N150 CVE-2014-2962 Directory Traversal Vulnerability
Belkin N150 is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Remote attackers can use a specially crafted request with directory-traversal sequences ('../') to retrieve arbitrary files in the context of the application. Information obtained could aid in further attacks.
Belkin N150 running firmware 1.00.07 and earlier are vulnerable.
Belkin N150 is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input.
Remote attackers can use a specially crafted request with directory-traversal sequences ('../') to retrieve arbitrary files in the context of the application. Information obtained could aid in further attacks.
Belkin N150 running firmware 1.00.07 and earlier are vulnerable.
Exploit / POC
Belkin N150 CVE-2014-2962 Directory Traversal Vulnerability
Attackers can exploit this issue through a browser.
Attackers can exploit this issue through a browser.
Solution / Fix
Belkin N150 CVE-2014-2962 Directory Traversal Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.