CVE-2018-1322
MEDIUMApache Syncope 1.2.0-1.2.10 - Information Disclosure via FIQL and ORDER BY Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2018-1322. PoCs published by Che-Chun Kuo.
AI-analyzed exploit summary This exploit demonstrates two vulnerabilities in Apache Syncope 2.0.7: RCE via XSLT injection in Reports/Templates and information disclosure via FIQL/ORDER BY sorting. The XSLT payloads show file read and command execution, while the FIQL/ORDER BY technique recovers sensitive data like security answers.
Description
An administrator with user search entitlements in Apache Syncope 1.2.x before 1.2.11, 2.0.x before 2.0.8, and unsupported releases 1.0.x and 1.1.x which may be also affected, can recover sensitive security values using the fiql and orderby parameters.
Exploits (1)
This exploit demonstrates two vulnerabilities in Apache Syncope 2.0.7: RCE via XSLT injection in Reports/Templates and information disclosure via FIQL/ORDER BY sorting. The XSLT payloads show file read and command execution, while the FIQL/ORDER BY technique recovers sensitive data like security answers.
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N