|
|||
Rule General Information |
---|
Release Date: | 2021-05-08 | |
Rule Name: | Yeastar TG400 GSM Directory Traversal Vulnerability (CVE-2021-27328) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Yeastar NeoGate TG400 91.3.0.3 devices are affected by Directory Traversal. An authenticated user can decrypt firmware and can read sensitive information, such as a password or decryption key. | |
Impact: | An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information. | |
Affected OS: | Windows, Linux, Others | |
Reference: | https://packetstormsecurity.com/files/161560/Yeastar-TG400-GSM-Gateway-91.3.0.3-Path-Traversal.html http://yeastar.com https://github.com/SQSamir/CVE-2021-27328 https://packetstormsecurity.com/files/161560/Yeastar-TG400-GSM-Gateway-91.3.0.3-Path-Traversal.html |
|
Solutions |
---|
Refer to the announcement or patch by the vendor: https://www.yeastar.com/ |