CVE-2018-19326

Zyxel VMG1312-B10D devices before 5.13(AAXA.8)C0 allow ../ Directory Traversal, as demonstrated by reading /etc/passwd.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zyxel:vmg1312-b10d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:vmg1312-b10d:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:57

Type Values Removed Values Added
References () https://gist.github.com/numanturle/4988b5583e5ebe501059bd368636de33 - Exploit, Third Party Advisory () https://gist.github.com/numanturle/4988b5583e5ebe501059bd368636de33 - Exploit, Third Party Advisory

Information

Published : 2018-11-17 14:29

Updated : 2024-11-21 03:57


NVD link : CVE-2018-19326

Mitre link : CVE-2018-19326

CVE.ORG link : CVE-2018-19326


JSON object : View

Products Affected

zyxel

  • vmg1312-b10d
  • vmg1312-b10d_firmware
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')