A Directory Traversal in the Web interface of the Allied Telesis AT-GS950/8 until Firmware AT-S107 V.1.1.3 [1.00.047] allows unauthenticated attackers to read arbitrary system files via a GET request. NOTE: This is an End-of-Life product.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-11-29T18:51:44

Updated: 2019-11-30T23:06:05

Reserved: 2019-11-12T00:00:00


Link: CVE-2019-18922

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-29T19:15:11.980

Modified: 2019-12-10T20:01:40.663


Link: CVE-2019-18922

JSON object: View

cve-icon Redhat Information

No data.

CWE