CVE-2017-14514: Path Traversal
Published Sep 17, 2017
·Updated
Directory Traversal on Tenda W15E devices before 15.11.0.14 allows remote attackers to read unencrypted files via a crafted URL.
Affected Software
2 affected components
Tenda W15e Firmware<=v15.11.0.13_cn
Tenda W15E
Event History
Sep 17, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14514?
CVE-2017-14514 has a severity rating that indicates high risk for exploitation by remote attackers.
2
How do I fix CVE-2017-14514?
To fix CVE-2017-14514, upgrade the firmware on Tenda W15E devices to version 15.11.0.14 or later.
3
What software versions are affected by CVE-2017-14514?
CVE-2017-14514 affects Tenda W15E firmware versions prior to 15.11.0.14.
4
What type of attack is associated with CVE-2017-14514?
CVE-2017-14514 is associated with a directory traversal attack that allows unauthorized file access.
5
Can CVE-2017-14514 be exploited remotely?
Yes, CVE-2017-14514 can be exploited remotely by attackers using crafted URLs.