QID 43847

Date Published: 2021-09-07

QID 43847: Huawei Router Directory Traversal Vulnerability (HW-461676)

The AR router has a directory traversal vulnerability when serving as an SFTP server. An attacker can log in to the AR router and traverse FTP server directories to access unauthorized directories, leading to information leaks. (Vulnerability ID: HWPSIRT-2015-09029)

An attacker can log in to the AR router and traverse FTP server directories to access unauthorized directories, leading to information leaks.

  • CVSS V2 rated as Medium - 4 severity.
  • Solution
    Refer to Huawei security advisory HW-461676 for updates and patch information.

    CVEs related to QID 43847

    Software Advisories
    Advisory ID Software Component Link
    hw-461676 Huawei VRP URL Logo www.huawei.com/en/psirt/security-advisories/hw-461676