PT-2017-15480 · Huawei · Ath-Tl00+30
Publicado
2017-11-22
·
Atualizado
2017-12-07
·
CVE-2017-2693
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
ALE-L02 versions C635B140 and earlier
ALE-L02 versions C636B140 and earlier
ALE-L21 versions C10B150 and earlier
ALE-L21 versions C185B200 and earlier
ALE-L21 versions C432B214 and earlier
ALE-L21 versions C464B150 and earlier
ALE-L21 versions C636B200 and earlier
ALE-L23 versions C605B190 and earlier
ALE-TL00 versions C01B250 and earlier
ALE-UL00 versions C00B250 and earlier
MT7-L09 versions C605B325 and earlier
MT7-L09 versions C900B339 and earlier
MT7-TL10 versions C900B339 and earlier
CRR-CL00 versions C92B172 and earlier
CRR-L09 versions C432B180 and earlier
CRR-TL00 versions C01B172 and earlier
CRR-UL00 versions C00B172 and earlier
CRR-UL20 versions C432B171 and earlier
GRA-CL00 versions C92B230 and earlier
GRA-L09 versions C432B222 and earlier
GRA-TL00 versions C01B230SP01 and earlier
GRA-UL00 versions C00B230 and earlier
GRA-UL00 versions C10B201 and earlier
GRA-UL00 versions C432B220 and earlier
H60-L04 versions C10B523 and earlier
H60-L04 versions C185B523 and earlier
H60-L04 versions C636B527 and earlier
H60-L04 versions C900B530 and earlier
PLK-AL10 versions C00B220 and earlier
PLK-AL10 versions C92B220 and earlier
PLK-CL00 versions C92B220 and earlier
PLK-L01 versions C10B140 and earlier
PLK-L01 versions C185B130 and earlier
PLK-L01 versions C432B187 and earlier
PLK-L01 versions C432B190 and earlier
PLK-L01 versions C636B130 and earlier
PLK-TL00 versions C01B220 and earlier
PLK-TL01H versions C01B220 and earlier
PLK-UL00 versions C17B220 and earlier
ATH-AL00 versions C00B210 and earlier
ATH-AL00 versions C92B200 and earlier
ATH-CL00 versions C92B210 and earlier
ATH-TL00 versions C01B210 and earlier
ATH-TL00H versions C01B210 and earlier
ATH-UL00 versions C00B210 and earlier
RIO-AL00 versions C00B220 and earlier
RIO-CL00 versions C92B220 and earlier
RIO-TL00 versions C01B220 and earlier
RIO-UL00 versions C00B220 and earlier
Description
The issue is a path traversal vulnerability. An attacker may exploit it to decompress malicious files into a target path.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ale-L02
Ale-L21
Ale-L23
Ale-Tl00
Ale-Ul00
Ath-Al00
Ath-Cl00
Ath-Tl00
Ath-Ul00
Crr-Cl00
Crr-L09
Crr-Tl00
Crr-Ul00
Crr-Ul20
Gra-Cl00
Gra-L09
Gra-Tl00
Gra-Ul00
H60-L04
Mt7-L09
Mt7-Tl10
Plk-Al10
Plk-Cl00
Plk-L01
Plk-Tl00
Plk-Tl01H
Plk-Ul00
Rio-Al00
Rio-Cl00
Rio-Tl00
Rio-Ul00