CVE-2019-18922 Scanner

Detects 'Directory Traversal' vulnerability in Allied Telesis AT-GS950/8 affects v. AT-S107 V.1.1.3 [1.00.047].


CVE-2019-18922 Scanner Detail

The Allied Telesis AT-GS950/8 is a network switch that is used for connecting multiple devices to a local area network (LAN). It provides advanced security features to protect networks from unauthorized access and malicious attacks. This particular switch has reached its end-of-life, which means that no further firmware updates or support will be provided.

Recently, a vulnerability was discovered in this product, which allows attackers to perform a Directory Traversal attack through the web interface of the switch. This vulnerability, identified as CVE-2019-18922, allows unauthenticated attackers to read arbitrary system files through a simple GET request. This means that attackers can gain access to any file on the target system, including sensitive data such as login credentials and network configuration files.

If this vulnerability is exploited, it can lead to serious consequences for organizations using this product. Attackers can gain unauthorized access to sensitive information, modify network configurations, and even take control of the entire network. Such activities can cause severe damage to the reputation and financial stability of the affected organization. Additionally, the exploitation of this vulnerability can lead to the total loss of confidentiality, integrity, and availability of the targeted systems.

If this vulnerability is exploited, it can lead to serious consequences for organizations using this product. Attackers can gain unauthorized access to sensitive information, modify network configurations, and even take control of the entire network. Such activities can cause severe damage to the reputation and financial stability of the affected organization. Additionally, the exploitation of this vulnerability can lead to the total loss of confidentiality, integrity, and availability of the targeted systems.



