PT-2017-15480 · Huawei · Ath-Tl00+30

Publicado

2017-11-22

·

Atualizado

2017-12-07

·

CVE-2017-2693

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ALE-L02 versions C635B140 and earlier ALE-L02 versions C636B140 and earlier ALE-L21 versions C10B150 and earlier ALE-L21 versions C185B200 and earlier ALE-L21 versions C432B214 and earlier ALE-L21 versions C464B150 and earlier ALE-L21 versions C636B200 and earlier ALE-L23 versions C605B190 and earlier ALE-TL00 versions C01B250 and earlier ALE-UL00 versions C00B250 and earlier MT7-L09 versions C605B325 and earlier MT7-L09 versions C900B339 and earlier MT7-TL10 versions C900B339 and earlier CRR-CL00 versions C92B172 and earlier CRR-L09 versions C432B180 and earlier CRR-TL00 versions C01B172 and earlier CRR-UL00 versions C00B172 and earlier CRR-UL20 versions C432B171 and earlier GRA-CL00 versions C92B230 and earlier GRA-L09 versions C432B222 and earlier GRA-TL00 versions C01B230SP01 and earlier GRA-UL00 versions C00B230 and earlier GRA-UL00 versions C10B201 and earlier GRA-UL00 versions C432B220 and earlier H60-L04 versions C10B523 and earlier H60-L04 versions C185B523 and earlier H60-L04 versions C636B527 and earlier H60-L04 versions C900B530 and earlier PLK-AL10 versions C00B220 and earlier PLK-AL10 versions C92B220 and earlier PLK-CL00 versions C92B220 and earlier PLK-L01 versions C10B140 and earlier PLK-L01 versions C185B130 and earlier PLK-L01 versions C432B187 and earlier PLK-L01 versions C432B190 and earlier PLK-L01 versions C636B130 and earlier PLK-TL00 versions C01B220 and earlier PLK-TL01H versions C01B220 and earlier PLK-UL00 versions C17B220 and earlier ATH-AL00 versions C00B210 and earlier ATH-AL00 versions C92B200 and earlier ATH-CL00 versions C92B210 and earlier ATH-TL00 versions C01B210 and earlier ATH-TL00H versions C01B210 and earlier ATH-UL00 versions C00B210 and earlier RIO-AL00 versions C00B220 and earlier RIO-CL00 versions C92B220 and earlier RIO-TL00 versions C01B220 and earlier RIO-UL00 versions C00B220 and earlier
Description The issue is a path traversal vulnerability. An attacker may exploit it to decompress malicious files into a target path.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-2693

Produtos afetados

Ale-L02
Ale-L21
Ale-L23
Ale-Tl00
Ale-Ul00
Ath-Al00
Ath-Cl00
Ath-Tl00
Ath-Ul00
Crr-Cl00
Crr-L09
Crr-Tl00
Crr-Ul00
Crr-Ul20
Gra-Cl00
Gra-L09
Gra-Tl00
Gra-Ul00
H60-L04
Mt7-L09
Mt7-Tl10
Plk-Al10
Plk-Cl00
Plk-L01
Plk-Tl00
Plk-Tl01H
Plk-Ul00
Rio-Al00
Rio-Cl00
Rio-Tl00
Rio-Ul00