7.5
CVSSv3

CVE-2017-11456

Published: 19/07/2017 Updated: 25/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Geneko GWR routers allow directory traversal sequences starting with a /../ substring, as demonstrated by unauthenticated read access to the configuration file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

geneko gwr352_3g_router_firmware -

geneko gwr352wv_wide_voltage_3g_router_firmware -

geneko gwr252_edge_router_firmware -

geneko gwr202_gprs_router_firmware -

Exploits

## Vulnerability Summary The following advisory describes a Unauthenticated Path Traversal vulnerability found in Geneko GWR routers series Geneko GWG is compact and cost effective communications solution that provides cellular capabilities for fixed and mobile applications such as data acquisition, smart metering, remote monitoring and managemen ...