atomic111.github.io
https://atomic111.github.io/article/secudos-domos-directory_traversal CVE-2019-18665
HIGHNuclei
DOMOS 5.5 - Local File Inclusion
Record summary
CVE-2019-18665 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.
Description
The Log module in SECUDOS DOMOS before 5.6 allows local file inclusion.
Description source: CVE List
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryHIGHDOMOS 5.5 - Local File InclusionCVSS 7.5
SECUDOS DOMOS before 5.6 allows local file inclusion via the log module.
Impact
Successful exploitation of this vulnerability could allow an attacker to read sensitive files on the server.
Remediation
Apply the latest patch or update to a version that is not affected by this vulnerability.
WeaknessesCWE-22
Authors0x_Akoko
Template tagscvecve2019domoslfisecudosvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:secudos:domos:*:*:*:*:*:*:*:*
https://atomic111.github.io/article/secudos-domos-directory_traversal https://vuldb.com/?id.144804 https://www.secudos.de/news-und-events/aktuelle-news/domos-release-5-6 https://nvd.nist.gov/vuln/detail/CVE-2019-18665 https://www.cybersecurity-help.cz/vdb/SB2019110403
Source: ProjectDiscovery
References
4nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-18665 cybersecurity-help.cz
https://www.cybersecurity-help.cz/vdb/SB2019110403 secudos.de
https://www.secudos.de/news-und-events/aktuelle-news/domos-release-5-6