First published: Fri Nov 24 2017(Updated: )
Directory Traversal vulnerability in app_data_center on Shenzhen Tenda Ac9 US_AC9V1.0BR_V15.03.05.14_multi_TD01, Ac9 ac9_kf_V15.03.05.19(6318_)_cn, Ac15 US_AC15V1.0BR_V15.03.05.18_multi_TD01, Ac15 US_AC15V1.0BR_V15.03.05.19_multi_TD01, Ac18 US_AC18V1.0BR_V15.03.05.05_multi_TD01, and Ac18 ac18_kf_V15.03.05.19(6318_)_cn devices allows remote unauthenticated attackers to read arbitrary files via a cgi-bin/luci/request?op=1&path= URI that uses directory traversal sequences after a /usb/ substring.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tenda Ac9 Firmware | =us_ac9v1.0br_v15.03.05.14_multi_td01 | |
Tenda AC9 | ||
Tenda Ac9 Firmware | =ac9_kf_v15.03.05.19\(6318_\)_cn | |
Tenda ac15 firmware | =us_ac15v1.0br_v15.03.05.18_multi_td01 | |
Tenda AC15 | ||
Tenda ac15 firmware | =us_ac15v1.0br_v15.03.05.19_multi_td01 | |
Tenda Ac18 Firmware | =us_ac18v1.0br_v15.03.05.05_multi_td01 | |
Tenda AC18 | ||
Tenda Ac18 Firmware | =ac18_kf_v15.03.05.19\(6318_\)_cn |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2017-16936.
The severity of CVE-2017-16936 is medium with a CVSS score of 6.5.
The following software versions are affected by CVE-2017-16936: Tenda Ac9 Firmware (us_ac9v1.0br_v15.03.05.14_multi_td01), Tenda Ac9 Firmware (ac9_kf_v15.03.05.19(6318_)_cn), Tenda ac15 firmware (us_ac15v1.0br_v15.03.05.18_multi_td01), Tenda ac15 firmware (us_ac15v1.0br_v15.03.05.19_multi_td01), Tenda Ac18 Firmware (us_ac18v1.0br_v15.03.05.05_multi_td01), and Tenda Ac18 Firmware (ac18_kf_v15).
The vulnerability manifests as a directory traversal vulnerability in the app_data_center.
Tenda AC9 and Tenda AC15 are not affected by the vulnerability.