CVE-2017-11456
19.07.2017, 07:29
Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as demonstrated by unauthenticated read access to the configuration file.
Vendor | Product | Version |
---|---|---|
geneko | gwr352_3g_router_firmware | - |
geneko | gwr352wv_wide_voltage_3g_router_firmware | - |
geneko | gwr252_edge_router_firmware | - |
geneko | gwr202_gprs_router_firmware | - |
𝑥
= Vulnerable software versions