2.1
CVSSv2

CVE-2020-27368

Published: 14/01/2021 Updated: 26/01/2021
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory Indexing in Login Portal of Login Portal of TOTOLINK-A702R-V1.0.0-B20161227.1023 allows malicious user to access /icons/ directories via GET Parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

totolink a702r_firmware 1.0.0-b20161227.1023

Github Repositories

TOTOLINK-A702R-V1.0.0-B20161227.1023 Directory Indexing Vulnerability

CVE-2020-27368 TOTOLINK-A702R-V100-B201612271023 Directory Indexing Vulnerability Description Directory Indexing in Login Portal of Login Portal of TOTOLINK-A702R-V100-B201612271023 allows attacker to access /icons/ directories via GET Parameter Additional Information Remediation disabling directory listing for web server VulnerabilityType Directory Indexing Vendor of P