Release date:
Updated on: 2013-02-26
Affected Systems:
Netgear DGN1000B Wireless Router
Description:
--------------------------------------------------------------------------------
Bugtraq id: 57836
NetGear DGN1000B is a wireless router.
NetGear DGN1000B 1.1.00.24 and 1.1.00.45 have command injection, information leakage, and cross-site scripting vulnerabilities. Attackers can exploit these vulnerabilities to obtain sensitive information and execute arbitrary commands or script code.
<* Source: Michael Messner (michae.messner@integralis.com)
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Netgear
-------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.netgear.com/