First published: Thu Oct 01 2020(Updated: )
Relative Path Traversal in Teltonika firmware TRB2_R_00.02.04.3 allows a remote, authenticated attacker to delete arbitrary files on disk via the admin/system/admin/certificates/delete action.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Teltonika-networks Trb245 Firmware | =00.02.04.03 | |
Teltonika-networks Trb245 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Teltonika firmware vulnerability is CVE-2020-5788.
CVE-2020-5788 has a severity rating of 6.5 (high).
The Relative Path Traversal vulnerability in Teltonika firmware TRB2_R_00.02.04.3 allows a remote, authenticated attacker to delete arbitrary files on disk via the admin/system/admin/certificates/delete action.
The affected software and version for CVE-2020-5788 is Teltonika-networks Trb245 Firmware version 00.02.04.03.
No, Teltonika-networks Trb245 is not vulnerable to CVE-2020-5788.
Apply the latest firmware update provided by Teltonika Networks to fix the Relative Path Traversal vulnerability in Teltonika firmware TRB2_R_00.02.04.3.
You can find more information about CVE-2020-5788 at the following link: [https://www.tenable.com/security/research/tra-2020-57](https://www.tenable.com/security/research/tra-2020-57).
The related CWE for CVE-2020-5788 is CWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')).