vendor:
Watson SHDSL Router 2p 8xEthernet Tabletop
by:
Dhruv Shah
7,5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: Watson SHDSL Router 2p 8xEthernet Tabletop
Affected Version From: 4.11.2.G
Affected Version To: 4.11.2.G
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Hardware
2013
Watson Management Console Directory Traversal Vulnerability
It has been found that Watson Management Console is prone to a directory traversal vulnerability. The issue is due to the server's failure to properly validate user supplied http requests. This issue may allow an attacker to escape the web server root directory and view any web server readable files. Information acquired by exploiting this issue may be used to aid further attacks against a vulnerable system.
Mitigation:
Validate user supplied http requests.