NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
BID:7371
Info
NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
| Bugtraq ID: | 7371 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 16 2003 12:00AM |
| Updated: | Apr 16 2003 12:00AM |
| Credit: | Discovery credited to "{ }" <[email protected]>. |
| Vulnerable: |
NetGear RP114 3.26 |
| Not Vulnerable: | |
Discussion
NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
It has been reported that NetGear RP114 devices do not properly log requests when content filters are used. This could lead to an attacker placing malicious requests that result in the execution of arbitrary script code.
It has been reported that NetGear RP114 devices do not properly log requests when content filters are used. This could lead to an attacker placing malicious requests that result in the execution of arbitrary script code.
Exploit / POC
NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
No exploit is required for this vulnerability.
No exploit is required for this vulnerability.
Solution / Fix
NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
NetGear Router Administrative Interface Content Filter Log Script Injection Vulnerability
References:
References:
- RP114 Product Page (Netgear)
- Netgear Logging Vulnerability ("{ }"
)