|
|
|
|
| |
Credit:
The information has been provided by Michal Sajdak of Securitum.
The original article can be found at: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2012-0365
|
| |
Vulnerable Systems:
* Cisco SRP 520 Series firmware prior to version 1.1.26
* Cisco SRP 520W-U Series firmware prior to version 1.2.4
* Cisco SRP 540 Series firmware prior to version 1.2.4
Directory traversal vulnerability in the Local TFTP file-upload application on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows remote authenticated users to upload software to arbitrary directories via unspecified vectors, aka Bug ID CSCtw56009
Vendor Status:
Cisco has released free software updates that address this vulnerability.
Patch Availability:
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120223-srp500.html
CVE Information:
CVE-2012-0365
|
|
|
|
|