ID

VAR-E-201405-0325


TITLE

NETGEAR DGN2200 ADSL Router Cross Site Request Forgery Vulnerability

Trust: 0.3

sources: BID: 67201

DESCRIPTION

NETGEAR DGN2200 router is prone to a cross-site request-forgery vulnerability.
Exploiting this issue may allow a remote attacker to perform certain unauthorized actions. This may lead to further attacks.
NETGEAR DGN2200 running firmware version 1.0.0.29_1.7.29 is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 67201

AFFECTED PRODUCTS

vendor:netgearmodel:dgn2200 1.0.0.29 1.7.29scope: - version: -

Trust: 0.3

sources: BID: 67201

EXPLOIT

To exploit this issue an attacker must entice a user into visiting a malicious site.
The following exploit is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/67201.html.txt">/data/vulnerabilities/exploits/67201.html.txt</a></li>

Trust: 0.3

sources: BID: 67201

PRICE

Free

Trust: 0.3

sources: BID: 67201

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 67201

CREDITS

Dolev Farhi

Trust: 0.3

sources: BID: 67201

EXTERNAL IDS

db:BIDid:67201

Trust: 0.3

sources: BID: 67201

REFERENCES

url:http://www.netgear.com

Trust: 0.3

sources: BID: 67201

SOURCES

db:BIDid:67201

LAST UPDATE DATE

2022-07-27T09:24:41.591000+00:00


SOURCES UPDATE DATE

db:BIDid:67201date:2014-05-03T00:00:00

SOURCES RELEASE DATE

db:BIDid:67201date:2014-05-03T00:00:00