CVE-2018-15745
HIGH IN THE WILD NUCLEIArgus Surveillance DVR 4.0.0.0 - Directory Traversal
Title source: metasploitExploitation Summary
CVE-2018-15745 has been observed exploited in the wild (reported by InTheWild.io).
EIP tracks 3 public exploits from researchers including hyp3rlinx, Jasurbek-Masimov, Maxwell Francis, John Page, including a Metasploit module auxiliary/gather/argus_dvr_4_lfi_cve_2018_15745.
A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit demonstrates an unauthenticated directory traversal vulnerability in Argus Surveillance DVR 4.0.0.0 via the WEBACCOUNT.CGI RESULTPAGE parameter, allowing arbitrary file disclosure. The PoC uses a curl command to retrieve the system.ini file from a Windows system.
Description
Argus Surveillance DVR 4.0.0.0 devices allow Unauthenticated Directory Traversal, leading to File Disclosure via a ..%2F in the WEBACCOUNT.CGI RESULTPAGE parameter.
Exploits (3)
This exploit demonstrates an unauthenticated directory traversal vulnerability in Argus Surveillance DVR 4.0.0.0 via the WEBACCOUNT.CGI RESULTPAGE parameter, allowing arbitrary file disclosure. The PoC uses a curl command to retrieve the system.ini file from a Windows system.
This repository contains a functional exploit for CVE-2018-15745, a directory traversal vulnerability in Argus Surveillance DVR 4.0.0.0. The exploit automates the process of encoding directory paths and sending a crafted GET request to retrieve arbitrary files from the target system.
This Metasploit module exploits an unauthenticated directory traversal vulnerability (CVE-2018-15745) in Argus Surveillance DVR 4.0.0.0, allowing arbitrary file read via a crafted HTTP request.
Nuclei Templates (1)
http.title:"web viewer for samsung dvr"
title="web viewer for samsung dvr"
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N