Medium severity5.3NVD Advisory· Published Mar 9, 2020· Updated Jun 17, 2026
CVE-2020-10249
CVE-2020-10249
Description
BWA DiREX-Pro 1.2181 devices allow full path disclosure via an invalid name array parameter to val_soft.php3.
Affected products
3- cpe:2.3:o:meinbwa:direx-pro_firmware:1.2181:*:*:*:*:*:*:*
- BWA/DiREX-Prodescription
Patches
Vulnerability mechanics
References
1- sku11army.blogspot.com/2020/03/bwa-multiple-vulnerabilities-in-direx.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.