Description
APC Network Management Card 4 contains a path traversal vulnerability that allows unauthenticated attackers to access sensitive system files by manipulating URL parameters. Attackers can exploit directory traversal techniques to read critical system files like /etc/passwd by using encoded path traversal characters in HTTP requests.
Problem types
CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
4
Credits
Víctor García
References
www.exploit-db.com/exploits/51897 (ExploitDB-51897)
www.apc.com/ (Official Product Homepage)
www.vulncheck.com/...-path-traversal-via-directory-traversal (VulnCheck Advisory: APC Network Management Card 4 Path Traversal)
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.