🔙 목록으로 돌아가기

CVE-2022-31706: VMware vRealize Log Insight - Path Traversal

TitleVMware vRealize Log Insight - Path Traversal
Authorritikchaddha
SeverityCritical
ImpactA remote, unauthenticated attacker can inject malicious files leading to remote code execution on the target appliance, resulting in complete compromise of the affected system.
RemediationUpdate VMware vRealize Log Insight to version 8.10.2 or later as per the official vendor advisory.
CVSS Score9.8
EPSS Score0.87794
CVE IDCVE-2022-31706
CWE IDCWE-22
Shodan Queryhttp.title:"vrealize log insight"
Fofa Querytitle="vrealize log insight"
Tags cve cve2022 vmware vrealize rce lfi passive vkev vuln

🔍 Vulnerability Description

he vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious actor can inject files into the operating system of an impacted appliance which can result in remote code execution.

🌐 HTTP Request

GET /i18n/component/JS?locale=en-US HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:140.0) Gecko/20100101 Firefox/140.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip
GET /api/v1/version HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:139.0) Gecko/20100101 Firefox/139.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2022/CVE-2022-31706.yaml

🦈 Packet Capture: ⬇️ Download cve-2022-31706.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A