CVE-2024-46327

An issue in the Http_handle object of VONETS VAP11G-300 v3.3.23.6.9 allows attackers to access sensitive files via a directory traversal.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:vonets:vap11g-300_firmware:3.3.23.6.9:*:*:*:*:*:*:*
cpe:2.3:h:vonets:vap11g-300:-:*:*:*:*:*:*:*

History

24 Jun 2025, 14:58

Type Values Removed Values Added
First Time Vonets vap11g-300
Vonets
Vonets vap11g-300 Firmware
References () https://hawktesters.com/5519644d-246e-4924-b7c8-8fdf742117be/ab3b22c9-1fbf-4dbb-a1cd-8c69f6723a4a.pdf - () https://hawktesters.com/5519644d-246e-4924-b7c8-8fdf742117be/ab3b22c9-1fbf-4dbb-a1cd-8c69f6723a4a.pdf - Broken Link
CPE cpe:2.3:h:vonets:vap11g-300:-:*:*:*:*:*:*:*
cpe:2.3:o:vonets:vap11g-300_firmware:3.3.23.6.9:*:*:*:*:*:*:*

30 Sep 2024, 12:46

Type Values Removed Values Added
Summary
  • (es) Un problema en el objeto Http_handle de VONETS VAP11G-300 v3.3.23.6.9 permite a los atacantes acceder a archivos confidenciales a través de un directory traversal.

26 Sep 2024, 15:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.7
CWE CWE-22

26 Sep 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-26 14:15

Updated : 2025-06-24 14:58


NVD link : CVE-2024-46327

Mitre link : CVE-2024-46327

CVE.ORG link : CVE-2024-46327


JSON object : View

Products Affected

vonets

  • vap11g-300
  • vap11g-300_firmware
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')