← All Advisories

Kerlink Wirnet iStation SNMP update directory traversal exposes sensitive files to remote attacker

Last refreshed2026-09-30

Status: NEW  |  Advisory ID: CVE-2024-32386

Key Details

CVECVE-2024-32386
CVSS Score / Version7.3 (High) / CVSS v3.1
Updated2026-07-17
CVSS VectorCVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
CVSS Proseattack vector is adjacent; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is none.
Classified asCWE-22 (Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'))

What to Know

Directory traversal vulnerability in Kerlink Kerlink Wirnet iStation 868 KerOS v.4.3.3_20200803132042 allows a remote attacker to obtain sensitive information via the SNMP update mechanism.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2024-32386
CVEhttps://www.cve.org/CVERecord?id=CVE-2024-32386