Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices allow Directory Traversal via the FileName parameter to messagelog.php.

Project Subscriptions

Vendors Products
Microchip Subscribe
Syncserver S100 Subscribe
Syncserver S100 Firmware Subscribe
Syncserver S200 Subscribe
Syncserver S200 Firmware Subscribe
Syncserver S250 Subscribe
Syncserver S250 Firmware Subscribe
Syncserver S300 Subscribe
Syncserver S300 Firmware Subscribe
Syncserver S350 Subscribe
Syncserver S350 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2020-29859 Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices allow Directory Traversal via the FileName parameter to messagelog.php.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T10:19:19.414Z

Reserved: 2020-02-17T00:00:00

Link: CVE-2020-9029

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-02-17T04:15:11.420

Modified: 2024-11-21T05:39:51.770

Link: CVE-2020-9029

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses