vendor:
Voyager 2091 (Wireless ADSL)
by:
milw0rm
9,3
CVSS
HIGH
Multiple Vulnerabilities
119, 79, 22
CWE
Product Name: Voyager 2091 (Wireless ADSL)
Affected Version From: BT Voyager 2091 (Wireless ADSL)
Affected Version To: BT Voyager 2091 (Wireless ADSL)
Patch Exists: YES
Related CWE: CVE-2006-3444, CVE-2006-3445, CVE-2006-3446
CPE: h:bt:voyager_2091
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2006
BT Voyager 2091 (Wireless ADSL) Multiple Vulnerabilities
BT Voyager 2091 (Wireless ADSL) is vulnerable to multiple vulnerabilities. The first vulnerability is a buffer overflow in the web server, which can be exploited by sending a specially crafted HTTP request with an overly long string. The second vulnerability is a cross-site scripting vulnerability, which can be exploited by sending a specially crafted HTTP request with malicious HTML code. The third vulnerability is a directory traversal vulnerability, which can be exploited by sending a specially crafted HTTP request with directory traversal sequences.
Mitigation:
Upgrade to the latest version of BT Voyager 2091 (Wireless ADSL).