Cisco SA520W Security Appliance Directory Traversal

Strike ID:
E18-0yga2
CVSS:
7.8 (AV:N/AC:L/Au:N/C:C/I:N/A:N)
False Positive:
f
Variants:
1
Year:
2017

Description

The vulnerability allows attackers read access to arbitrary file contents accessible in the Cisco SA520W Security Appliance server by insufficient validation of user input on requests. Successful exploitation could result in arbitrary file access on the target server.