CVE-2020-24113: Path Traversal
Published Aug 22, 2023
·Updated
Directory Traversal vulnerability in Contacts File Upload Interface in Yealink W60B version 77.83.0.85, allows attackers to gain sensitive information and cause a denial of service (DoS).
Affected Software
2 affected components
Yealink W60b Firmware=77.83.0.85
Yealink W60B
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2020-24113?
CVE-2020-24113 is a directory traversal vulnerability in the Contacts File Upload Interface in Yealink W60B version 77.83.0.85.
2
How does CVE-2020-24113 affect the system?
CVE-2020-24113 allows attackers to gain sensitive information and cause a denial of service (DoS).
3
What is the severity of CVE-2020-24113?
CVE-2020-24113 has a severity rating of 9.1 (Critical).
4
Which software versions are affected by CVE-2020-24113?
Yealink W60B version 77.83.0.85 is affected by CVE-2020-24113.
5
How can I fix CVE-2020-24113?
Update to a version of Yealink W60B firmware that is not affected by the vulnerability.