← volver
CVE-2018-3949highexplotación observada

CVE-2018-3949

55Vexday Risk Score

Prioriza la corrección. Ella explotación observada por VulnCheck.

ssvc Actcvss 7.5epss 53%
de la publicación al arma
Publicada en NVD1 dic
VulnCheck+1138d
probabilidad de explotación
53%top 1% de las CVE
explotación observada
VulnCheck
An exploitable information disclosure vulnerability exists in the HTTP server functionality of the TP-Link TL-R600VPN. A specially crafted URL can cause a directory traversal, resulting in the disclosure of sensitive system files. An attacker can send either an unauthenticated or an authenticated web request to trigger this vulnerability.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Productos afectados
Talos · TP-Link