漏洞描述 ZyXEL Armor X1 WAP6806是中国台湾合勤(ZyXEL)公司的一款无线网卡产品。 ZyXEL Armor X1 WAP68061.00(ABAL.6)C0版本中存在路径遍历漏洞。该漏洞源于网络系统或产品未能正确地过滤资源或文件路径中的特殊元素。攻击者可利用该漏洞访问受限目录之外的位置。
相关漏洞推荐 CVE-2021-3297: Zyxel NBG2105 V1.00(AAGU.2)C0 - Authentication Bypass POC 2025-09-01 | Zyxel NBG2105 V1.00(AAGU.2)C0 On Zyxel NBG2105 V1.00(AAGU.2)C0 devices, setting the login cookie to 1 provides administrator acces... CVE-2022-0342: Zyxel authentication bypass patch analysis POC 2025-09-01 | Zyxel An authentication bypass vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versio... CVE-2022-30525: Zyxel Firewall - OS Command Injection POC 2025-09-01 | Zyxel Firewall An OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions ... CVE-2020-10199: Nexus Repository before 3.21.2 allows JavaEL Injection POC 2025-09-01 | Nexus Repository 漏洞触发需要任意账户权限 body="Nexus Repository Manager" app="Nexus-Repository-Manager" CVE-2020-11455: LimeSurvey 4.1.11 - Path Traversal POC 2025-09-01 | LimeSurvey LimeSurvey before 4.1.12+200324 contains a path traversal vulnerability in application/controllers/a...