We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2018-0405

Cisco RV180W Wireless-N Multifunction VPN Router Directory Path Traversal Vulnerability



Assignercisco
Reserved2017-11-27
Published2018-10-03
Updated2024-08-05

Description

A vulnerability in the web framework code for Cisco RV180W Wireless-N Multifunction VPN Router and Small Business RV Series RV220W Wireless Network Security Firewall could allow an unauthenticated, remote attacker to conduct a directory path traversal attack on a targeted device. The issue is due to improper sanitization of user-supplied input in HTTP request parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location.

Problem types

CWE-22

Product status

Any version
affected

References

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvk28019

cve.org CVE-2018-0405

nvd.nist.gov CVE-2018-0405

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2018-0405
Subscribe to our newsletter to learn more about our work.