Absolute Path Traversal Vulnerability in Belkin N150 Router
CVE-2014-2962
Currently unrated
Key Information:
- Vendor
Belkin
- Vendor
- CVE Published:
- 19 June 2014
Badges
๐พ Exploit Exists๐ก Public PoC๐ฃ EPSS 88%
What is CVE-2014-2962?
An absolute path traversal vulnerability exists in the webproc CGI module of the Belkin N150 F9K1009 v1 router, enabling remote attackers to gain unauthorized access to sensitive files on the system. By manipulating the 'getpage' parameter with a crafted full pathname, attackers can exploit this weakness to read arbitrary files, exposing potentially sensitive data.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
