ID
VAR-E-201405-0325
TITLE
NETGEAR DGN2200 ADSL Router Cross Site Request Forgery Vulnerability
Trust: 0.3
DESCRIPTION
NETGEAR DGN2200 router is prone to a cross-site request-forgery vulnerability.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions. This may lead to further attacks.
NETGEAR DGN2200 running firmware version 1.0.0.29_1.7.29 is vulnerable; other versions may also be affected.
Trust: 0.3
AFFECTED PRODUCTS
vendor: | netgear | model: | dgn2200 1.0.0.29 1.7.29 | scope: | - | version: | - | Trust: 0.3 |
EXPLOIT
To exploit this issue an attacker must entice a user into visiting a malicious site.
The following exploit is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/67201.html.txt">/data/vulnerabilities/exploits/67201.html.txt</a></li>
Trust: 0.3
PRICE
Free
Trust: 0.3
TYPE
Input Validation Error
Trust: 0.3
CREDITS
Dolev Farhi
Trust: 0.3
EXTERNAL IDS
db: | BID | id: | 67201 | Trust: 0.3 |
REFERENCES
url: | http://www.netgear.com | Trust: 0.3 |
SOURCES
db: | BID | id: | 67201 |
LAST UPDATE DATE
2022-07-27T09:24:41.591000+00:00
SOURCES UPDATE DATE
db: | BID | id: | 67201 | date: | 2014-05-03T00:00:00 |
SOURCES RELEASE DATE
db: | BID | id: | 67201 | date: | 2014-05-03T00:00:00 |