CVE-2007-3985

MEDIUM
CVSS v3
5.0CVSS v2
1.01% EPSS (exploit probability)
CWE

Description

Directory traversal vulnerability in file.cgi in Secure Computing SecurityReporter (aka Network Security Analyzer) 4.6.3 allows remote attackers to download arbitrary files via a .. (dot dot) in the name parameter.

Affected routers (1)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti EdgeRouter 4 Likely Patched

External references