CVE-2021-23241
MERCUSYS Mercury X18G 1.0.5 Router - Local File Inclusion
Record summary
CVE-2021-23241 has a selected CVSS score of 5.3 (medium); EIP currently links 1 Nuclei template.
Description
MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web server, as demonstrated by the /loginLess/../../etc/passwd URI.
Exploitation context
Available material
- Nuclei templates
- 1
Nuclei templates
1ProjectDiscoveryMEDIUMMERCUSYS Mercury X18G 1.0.5 Router - Local File InclusionCVSS 5.3
MERCUSYS Mercury X18G 1.0.5 devices are vulnerable to local file inclusion via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web server, as demonstrated by the /loginLess/../../etc/passwd URI.
Impact
An attacker can exploit this vulnerability to access sensitive information, such as configuration files, credentials, or other sensitive data stored on the router.
Remediation
Apply the latest firmware update provided by the vendor to fix the LFI vulnerability and ensure proper input validation is implemented.
Source: ProjectDiscovery