GHSA-x5wc-6mvj-2wxv
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
An exploitable information disclosure vulnerability exists in the HTTP server functionality of the TP-Link TL-R600VPN. A specially crafted URL can cause a directory traversal, resulting in the disclosure of sensitive system files. An attacker can send either an unauthenticated or an authenticated web request to trigger this vulnerability.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: July 7, 2025 6:28 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.