ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-37015”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-37015
Published
2026-01-29
CVSS:
7.1
ShadowTrackr CVSS:
4.9
Summary:
The Ruijie Networks Switch eWeb S29_RGOS version 11.4 contains a directory traversal vulnerability that allows unauthenticated attackers to access sensitive configuration files by manipulating file path parameters. Attackers can exploit the /download.do endpoint with '../' sequences to retrieve system configuration files containing credentials and network settings.