First published: Tue Oct 08 2019(Updated: )
/var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arbitrary files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fiberhome Hg2201t Firmware | =1.00.m5007_js_201804 | |
FiberHome HG2201T |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
/var/WEB-GUI/cgi-bin/downloadfile.cgi on FiberHome HG2201T 1.00.M5007_JS_201804 devices allows pre-authentication Directory Traversal for reading arbitrary files.
Fiberhome HG2201T 1.00.M5007_JS_201804 devices.
The severity of CVE-2019-17187 is high, with a CVSS score of 7.5.
Apply the latest firmware update provided by Fiberhome for HG2201T 1.00.M5007_JS_201804 devices.
You can find more information about CVE-2019-17187 at the following reference: [link](https://gist.github.com/ztz472947849/d62e7b6f4831b55c338ef22432eca06d).