← Back

CVE-2012-0365

nvd nist
Published: Feb 25, 2012Modified: Apr 29, 2026

JSON object

Loading...
9.0
Vector
AV:N/AC:L/Au:S/C:C/I:C/A:C
Exploitability: 8.0 / Impact: 10.0
Source: NVD

Description

Directory traversal vulnerability in the Local TFTP file-upload application on Cisco SRP 520 series devices with firmware before 1.1.26 and SRP 520W-U and 540 series devices with firmware before 1.2.4 allows remote authenticated users to upload software to arbitrary directories via unspecified vectors, aka Bug ID CSCtw56009.

Affected (18)

12 products
Small Business Srp521w
Small Business Srp526w
Small Business Srp527w
Small Business Srp521w U
Small Business Srp526w U
Small Business Srp527w U
Small Business Srp541w
Small Business Srp546w
Small Business Srp547w
Configuration A
9 vulnerable
Configuration B
4 vulnerable
Configuration C
5 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Up to 1.02.01
Version 1.02.00.023
All versions
All versions
All versions

Timeline

No history available yet.