Description
Directory traversal vulnerability in cgi-bin/webcm in the administrative web interface on the Netgear DG632 with firmware 3.4.0_ap allows remote attackers to list arbitrary directories via a .. (dot dot) in the nextpage parameter.
Affected products
- NETGEAR / dg632
- NETGEAR / dg632_firmware3.4.0_ap – 3.4.0_ap