Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-01594
HistoryNov 22, 2021 - 12:00 a.m.

Lantronix PremierWave 2050 Path Traversal Vulnerability (CNVD-2022-01594)

2021-11-2200:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
lantronix
premierwave 2050
embedded
wi-fi
module
vulnerability
path traversal
lack of filtering
escaping
web manager
file upload
exploit
arbitrary file overwrites

EPSS

0.001

Percentile

49.9%

The Lantronix PremierWave 2050 is an embedded enterprise Wi-Fi module from Lantronix, Inc. The Lantronix PremierWave 2050 version 8.9.0.0R4 is vulnerable to a path traversal vulnerability caused by a lack of filtering and escaping of path parameters by the Web Manager file upload function. An attacker could exploit the vulnerability to cause arbitrary file overwrites.

EPSS

0.001

Percentile

49.9%

Related for CNVD-2022-01594