CVE-2021-40858
Published Dec 13, 2021Auerswald COMpact 5500R devices before 8.2B allow Arbitrary File Disclosure. A sub-admin can read the cleartext Admin password via the fileName=../../etc/passwd substring.
Vendor/product archive
2 CVEs tagged to auerswald / commander_basic.2(19")_ip — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
Auerswald COMpact 5500R devices before 8.2B allow Arbitrary File Disclosure. A sub-admin can read the cleartext Admin password via the fileName=../../etc/passwd substring.
Auerswald COMpact 5500R devices before 8.2B allow Privilege Escalation via the passwd=1 substring.