CVE-2019-6273: Path Traversal
Published Mar 19, 2019
·Updated
downloadfile in GL.iNet GL-AR300M-Lite devices with firmware 2.27 allows remote attackers to download arbitrary files.
Affected Software
4 affected components
gl-inet Gl-ar300m-lite Firmware=2.27
gl-inet Gl-ar300m-lite
All of the following
gl-inet Gl-ar300m-lite Firmware=2.27
gl-inet Gl-ar300m-lite
Event History
Mar 19, 2019
CVE Published
via MITRE·06:51 PM
Data Sourced
via MITRE·06:51 PM
Description
Mar 21, 2019
Data Sourced
via NVD·04:01 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-6273.
2
What is the severity of CVE-2019-6273?
CVE-2019-6273 has a severity rating of 6.5, which is considered medium.
3
Which devices are affected by CVE-2019-6273?
GL.iNet GL-AR300M-Lite devices with firmware 2.27 are affected by CVE-2019-6273.
4
How can remote attackers exploit CVE-2019-6273?
Remote attackers can exploit CVE-2019-6273 to download arbitrary files on GL.iNet GL-AR300M-Lite devices with firmware 2.27.
5
Are there any known exploits for CVE-2019-6273?
Yes, there are known exploits for CVE-2019-6273. You can find more information at the provided references.