Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fritzdsl | Fritzdsl | 02.02.29 (including) | 02.02.29 (including) |