Summary
Multiple Conceptronic products are prone to a directory-traversal vulnerability.
A remote attacker could exploit the vulnerability using directory- traversal characters ('../') to access arbitrary files that contain sensitive information that could aid in further attacks.
The following products are affected:
Conceptronic Home Media Store CH3ENAS Firmware 3.0.12 Conceptronic Dual Bay Home Media Store CH3HNAS Firmware 2.4.13
References
Updated on 2015-03-25
Severity
Classification
-
CVSS Base Score: 7.8
AV:N/AC:L/Au:N/C:C/I:N/A:N
Related Vulnerabilities
- AudiStat multiple vulnerabilities
- Alchemy Eye HTTP Command Execution
- Adobe ColdFusion Components (CFC) Denial Of Service Vulnerability
- Atlassian JIRA FishEye and Crucible Plugins XML Parsing Unspecified Security Vulnerability
- AlienVault Open Source SIEM (OSSIM) 'timestamp' Parameter Directory Traversal Vulnerability