In GL.iNET GL-AR300M routers with firmware v4.3.7 it is possible to write arbitrary files through a path traversal attack in the OpenVPN client file upload functionality.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gl-inet gl-ar300m_firmware 4.3.7 |