Directory Traversal Vulnerability in Allied Telesis AT-GS950/8 Web Interface

Directory Traversal Vulnerability in Allied Telesis AT-GS950/8 Web Interface

CVE-2019-18922 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

A Directory Traversal in the Web interface of the Allied Telesis AT-GS950/8 until Firmware AT-S107 V.1.1.3 [1.00.047] allows unauthenticated attackers to read arbitrary system files via a GET request. NOTE: This is an End-of-Life product.

Learn more about our Web App Pen Testing.