CVE-2020-11491
MEDIUMzen_load_balancer 3.10.1 - Authenticated Path Traversal via Monitoring Logs
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-11491.
PoCs published by Basim Alabdullah, Dhiraj Mishra, including Metasploit module auxiliary/scanner/http/zenload_balancer_traversal.
AI-analyzed exploit summary This Metasploit module exploits an authenticated directory traversal vulnerability in Zen Load Balancer v3.10.1 via the 'filelog' parameter in 'index.cgi', allowing arbitrary file reads. It requires valid credentials and sends a crafted GET request to retrieve sensitive files like '/etc/passwd'.
Description
Monitoring::Logs in Zen Load Balancer 3.10.1 allows remote authenticated admins to conduct absolute path traversal attacks, as demonstrated by a filelog=/etc/shadow request to index.cgi.
Exploits (1)
This Metasploit module exploits an authenticated directory traversal vulnerability in Zen Load Balancer v3.10.1 via the 'filelog' parameter in 'index.cgi', allowing arbitrary file reads. It requires valid credentials and sends a crafted GET request to retrieve sensitive files like '/etc/passwd'.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N