CVE-2015-8228: Path Traversal
Directory traversal vulnerability in the SFTP server in Huawei AR 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600 routers with software before V200R006SPH003 allows remote authenticated users to access arbitrary directories via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-8228?
CVE-2015-8228 is classified as a high severity vulnerability due to its potential for unauthorized directory access.
How do I fix CVE-2015-8228?
To fix CVE-2015-8228, you should upgrade your Huawei router firmware to version V200R006SPH003 or later.
What devices are affected by CVE-2015-8228?
CVE-2015-8228 affects various Huawei AR routers including models 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600.
Can remote authenticated users exploit CVE-2015-8228?
Yes, remote authenticated users can exploit CVE-2015-8228 to access arbitrary directories on the vulnerable devices.
Is there a workaround for CVE-2015-8228 if I cannot update the firmware?
There are no known workarounds for CVE-2015-8228; the best mitigation is to apply the firmware update.