ZeroHour

CVE-2017-11456

PoC
CVSS 3.0
7.5 high
EPSS
9%p95
Published
()
Modified
Description

Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as demonstrated by unauthenticated read access to the configuration file.

Vendors
geneko
Products
gwr352 3g router firmware, gwr352wv wide voltage 3g router firmware, gwr252 edge router firmware, gwr202 gprs router firmware
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.