Back

CVE-2003-1427

Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows remote attackers to read arbitrary files, such as the netgear.cfg configuration file, via a hex-encoded (%2e%2e%2f) ../ (dot dot slash) in the port parameter.

Published: Dec 31, 2003 Modified: Jun 16, 2026
CWE-22

CVSS Metrics

Affected Products (1)

Vendor Product Version
netgear fm114p 1.4_beta_release_17

GitHub Security Advisory GHSA-f3jf-vg7f-63fc

Directory traversal vulnerability in the web configuration interface in Netgear FM114P 1.4 allows...

Risk Scores

CVSS Score 6.4 / 10
EPSS Score 2.81%

Top 15% most likely to be exploited

Threat Score 26.4 / 100

Data Sources

NVD EPSS GitHub