First published: Thu Nov 01 2012(Updated: )
Directory traversal vulnerability in the web-based management feature on the TP-LINK TL-WR841N router with firmware 3.13.9 build 120201 Rel.54965n and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to the help/ URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
TP-Link TL-WR841N V8 Firmware | ||
TP-Link TL-WR841ND Firmware | <=3.13.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5687 is considered a high severity vulnerability due to its potential for remote exploitation and sensitive file exposure.
To fix CVE-2012-5687, update the TP-LINK TL-WR841N router firmware to a version later than 3.13.9.
CVE-2012-5687 allows remote attackers to read arbitrary files on the TP-LINK TL-WR841N router by exploiting a directory traversal vulnerability.
CVE-2012-5687 affects TP-LINK TL-WR841N routers with firmware version 3.13.9 build 120201 Rel.54965n and earlier.
CVE-2012-5687 is a remote vulnerability, allowing attackers to exploit it without physical access to the device.