Absolute Path Traversal Vulnerability in Belkin N150 Router
CVE-2014-2962

Currently unrated

Key Information:

Vendor

Belkin

Vendor
CVE Published:
19 June 2014

What is CVE-2014-2962?

An absolute path traversal vulnerability exists in the webproc CGI module of the Belkin N150 F9K1009 v1 router, enabling remote attackers to gain unauthorized access to sensitive files on the system. By manipulating the 'getpage' parameter with a crafted full pathname, attackers can exploit this weakness to read arbitrary files, exposing potentially sensitive data.

References

EPSS Score

90% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.