CVE-2019-16105: Path Traversal
Published Sep 8, 2019
·Updated
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows ..%2f directory traversal via a rest/json/configdb/download/ URI.
Affected Software
2 affected components
Silver-peak Unity Edgeconnect Sd-wan Firmware=8.1.4.9_65644
Silver-peak Unity Edgeconnect Sd-wan
Event History
Sep 8, 2019
CVE Published
via MITRE·04:36 PM
Data Sourced
via MITRE·04:36 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-16105.
2
What is the severity of CVE-2019-16105?
The severity of CVE-2019-16105 is medium with a severity value of 4.9.
3
What is the affected software for CVE-2019-16105?
The affected software for CVE-2019-16105 is Silver-peak Unity Edgeconnect Sd-wan Firmware version 8.1.4.9_65644.
4
What is the CWE classification for CVE-2019-16105?
The CWE classification for CVE-2019-16105 is CWE-22.
5
How can I fix CVE-2019-16105?
To fix CVE-2019-16105, update to the latest version of Silver-peak Unity Edgeconnect Sd-wan Firmware.