Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-7669

Опубликовано: 27 апр. 2018
Источник: nvd
CVSS3: 7.5
CVSS2: 7.8
EPSS Средний

Описание

An issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application is vulnerable to a directory traversal attack, allowing an attacker to access arbitrary files from the host Operating System using a sitecore/shell/default.aspx?xmlcontrol=LogViewerDetails&file= URI. Validation is performed to ensure that the text passed to the 'file' parameter correlates to the correct log file directory. This filter can be bypassed by including a valid log filename and then appending a traditional 'dot dot' style attack.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sitecore:sitecore.net:*:*:*:*:*:*:*:*
Версия от 8.2 (включая)
cpe:2.3:a:sitecore:sitecore.net:8.1:update1:*:*:*:*:*:*
cpe:2.3:a:sitecore:sitecore.net:8.1:update2:*:*:*:*:*:*
cpe:2.3:a:sitecore:sitecore.net:8.1:update3:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.2446
Средний

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

An issue was discovered in Sitecore Sitecore.NET 8.1 rev. 151207 Hotfix 141178-1 and above. The 'Log Viewer' application is vulnerable to a directory traversal attack, allowing an attacker to access arbitrary files from the host Operating System using a sitecore/shell/default.aspx?xmlcontrol=LogViewerDetails&file= URI. Validation is performed to ensure that the text passed to the 'file' parameter correlates to the correct log file directory. This filter can be bypassed by including a valid log filename and then appending a traditional 'dot dot' style attack.

EPSS

Процентиль: 96%
0.2446
Средний

7.5 High

CVSS3

7.8 High

CVSS2

Дефекты

CWE-22