Directory Traversal Vulnerability in NETGEAR Managed Switches
CVE-2017-18824

4MEDIUM

Key Information:

Vendor
Netgear
Vendor
CVE Published:
20 April 2020

Summary

NETGEAR managed switches have a directory traversal vulnerability that could allow an attacker to access sensitive files and directories on the affected devices. This flaw affects specific models of the M4300 series that are running versions prior to 12.0.2.15, potentially compromising the security of network operations. Users of these devices should apply the recommended updates as outlined in the security advisory to mitigate the risks associated with this vulnerability.

References

CVSS V3.1

Score:
4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.