Lucene search

K
cvelistCiscoCVELIST:CVE-2018-0405
HistoryOct 03, 2018 - 12:00 a.m.

CVE-2018-0405 Cisco RV180W Wireless-N Multifunction VPN Router Directory Path Traversal Vulnerability

2018-10-0300:00:00
CWE-22
cisco
www.cve.org

0.003 Low

EPSS

Percentile

69.4%

A vulnerability in the web framework code for Cisco RV180W Wireless-N Multifunction VPN Router and Small Business RV Series RV220W Wireless Network Security Firewall could allow an unauthenticated, remote attacker to conduct a directory path traversal attack on a targeted device. The issue is due to improper sanitization of user-supplied input in HTTP request parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location.

CNA Affected

[
  {
    "product": "Cisco RV180W Wireless-N Multifunction VPN Router",
    "vendor": "Cisco",
    "versions": [
      {
        "status": "affected",
        "version": "n/a"
      }
    ]
  }
]

0.003 Low

EPSS

Percentile

69.4%

Related for CVELIST:CVE-2018-0405