10
CVSSv2

CVE-2020-17383

Published: 24/01/2022 Updated: 28/01/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

A directory traversal vulnerability on Telos Z/IP One devices up to and including 4.0.0r grants an unauthenticated individual root level access to the device's file system. This can be used to identify configuration settings, password hashes for built-in accounts, and the cleartext password for remote configuration of the device through the WebUI.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

telosalliance z\\/ip_one_firmware