header-logo
Suggest Exploit
vendor:
Voyager 2091 (Wireless ADSL)
by:
milw0rm
9,3
CVSS
HIGH
Multiple Vulnerabilities
119, 79, 22
CWE
Product Name: Voyager 2091 (Wireless ADSL)
Affected Version From: BT Voyager 2091 (Wireless ADSL)
Affected Version To: BT Voyager 2091 (Wireless ADSL)
Patch Exists: YES
Related CWE: CVE-2006-3444, CVE-2006-3445, CVE-2006-3446
CPE: h:bt:voyager_2091
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: None
2006

BT Voyager 2091 (Wireless ADSL) Multiple Vulnerabilities

BT Voyager 2091 (Wireless ADSL) is vulnerable to multiple vulnerabilities. The first vulnerability is a buffer overflow in the web server, which can be exploited by sending a specially crafted HTTP request with an overly long string. The second vulnerability is a cross-site scripting vulnerability, which can be exploited by sending a specially crafted HTTP request with malicious HTML code. The third vulnerability is a directory traversal vulnerability, which can be exploited by sending a specially crafted HTTP request with directory traversal sequences.

Mitigation:

Upgrade to the latest version of BT Voyager 2091 (Wireless ADSL).
Source

Exploit-DB raw data:

BT Voyager 2091 (Wireless ADSL) Multiple Vulnerabilities

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/2034.tgz (07182006-btvoyager.tgz)

# milw0rm.com [2006-07-18]