Directory traversal vulnerability in the SFTP server in Huawei AR 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600 routers with software before V200R006SPH003 allows remote authenticated users to access arbitrary directories via unspecified vectors.
2015-11-24T20:59:21.130
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.0 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | huawei | ar_firmware | ≤ v200r006c10 | Yes |
Hardware | huawei | ar120 | * | No |
Hardware | huawei | ar1200 | * | No |
Hardware | huawei | ar150 | * | No |
Hardware | huawei | ar160 | * | No |
Hardware | huawei | ar200 | * | No |
Hardware | huawei | ar2200 | * | No |
Hardware | huawei | ar3200 | * | No |
Hardware | huawei | ar3600 | * | No |
Hardware | huawei | ar500 | * | No |