20171016 [CVE-2017-15359] 3CX Phone System - Authenticated Directory Traversalmailing list
http://seclists.org/fulldisclosure/2017/Oct/37 CVE-2017-15359
MEDIUM
3CX Phone System 15.5.3554.1 - Directory Traversal
Record summary
CVE-2017-15359 has a selected CVSS score of 6.5 (medium); EIP currently links 1 catalogued exploit.
Description
In the 3CX Phone System 15.5.3554.1, the Management Console typically listens to port 5001 and is prone to a directory traversal attack: "/api/RecordingList/DownloadRecord?file=" and "/api/SupportInfo?file=" are the vulnerable parameters. An attacker must be authenticated to exploit this issue to access sensitive information to aid in subsequent attacks.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDB3CX Phone System 15.5.3554.1 - Directory TraversalExploitDB exploitby Jens RegelNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-15359 42991exploit
https://www.exploit-db.com/exploits/42991