beroNet VoIP Gateways before 3.0.16 have a PHP script that allows downloading arbitrary files, including ones with credentials.

Project Subscriptions

Vendors Products
Beronet Subscribe
Bf16001e1box Subscribe
Bf16001t1box Subscribe
Bf4001e1box Subscribe
Bf4001t1box Subscribe
Bf64002e1box Subscribe
Bf64002t1box Subscribe
Bfsb1s0 Subscribe
Bfsb2hy Subscribe
Bfsb2s0 Subscribe
Bfsb2s02xo Subscribe
Bfsb4xo Subscribe
Bfsb4xo4xs Subscribe
Bfsb4xs Subscribe
Bn16fxsfax B Subscribe
Bn16fxsfax C Subscribe
Voice Over Internet Protocol Gateways Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2017-10013 beroNet VoIP Gateways before 3.0.16 have a PHP script that allows downloading arbitrary files, including ones with credentials.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T21:45:24.563Z

Reserved: 2020-07-29T00:00:00

Link: CVE-2017-18923

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-07-29T20:15:12.303

Modified: 2024-11-21T03:21:16.283

Link: CVE-2017-18923

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses