CVE-2020-10249: Meinbwa Direx-Pro Firmware
Medium severity, CVSS 5.3. EPSS: 1% chance of exploitation in the next 30 days.
BWA DiREX-Pro 1.2181 devices allow full path disclosure via an invalid name array parameter to val_soft.php3.
Affected products
- Meinbwa Direx-Pro Firmware: version 1.2181 only
Published 2020-03-09. Last modified 2026-06-17.