CVE-2019-12182

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
13/03/2020
Last modified:
20/03/2020

Description

Directory Traversal in Safescan Timemoto and TA-8000 series version 1.0 allows unauthenticated remote attackers to execute code via the administrative API.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:safescan:ta-8010_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8010:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:ta-8015_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8015:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:ta-8020_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8020:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:ta-8025_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8025:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:ta-8030_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8030:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:ta-8035_firmware:*:*:*:*:*:*:*:* 7.0.3.100-ta8000-14 (excluding)
cpe:2.3:h:safescan:ta-8035:-:*:*:*:*:*:*:*
cpe:2.3:o:safescan:tm-616_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:safescan:tm-616:-:*:*:*:*:*:*:*