TP-Link Omada Controller Software 3.2.6 allows Directory Traversal for reading arbitrary files via com.tp_link.eap.web.portal.PortalController.getAdvertiseFile in /opt/tplink/EAPController/lib/eap-web-3.2.6.jar.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-05-04T13:36:04

Updated: 2024-08-04T11:56:52.170Z

Reserved: 2020-04-29T00:00:00

Link: CVE-2020-12475

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-05-04T14:15:13.327

Modified: 2020-05-08T15:26:53.900

Link: CVE-2020-12475

cve-icon Redhat

No data.