Record summary

CVE-2022-35413 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

WAPPLES through 6.0 has a hardcoded systemi account. A threat actor could use this account to access the system configuration and confidential information (such as SSL keys) via an HTTPS request to the /webapi/ URI on port 443 or 5001.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Nov 13, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryCRITICALWAPPLES Web Application Firewall <=6.0 - Hardcoded CredentialsCVSS 9.8

WAPPLES Web Application Firewall through 6.0 contains a hardcoded credentials vulnerability. It contains a hardcoded system account accessible via db/wp.no1, as configured in the /opt/penta/wapples/script/wcc_auto_scaling.py file. An attacker can use this account to access system configuration and confidential information, such as SSL keys, via an HTTPS request to the /webapi/ URI on port 443 or 5001.

Impact

An attacker can exploit this vulnerability to gain unauthorized access to the WAPPLES Web Application Firewall.

Remediation

Upgrade to a version of WAPPLES Web Application Firewall that does not contain hardcoded credentials or apply the vendor-provided patch to fix the vulnerability.

WeaknessesCWE-798
AuthorsFor3stCo1d
Template tagscvecve2022wapplesfirewalldefault-loginpentasecurityvkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:pentasecurity:wapples:*:*:*:*:*:*:*:*
Shodan: http.title:"Intelligent WAPPLES"
Shodan: http.title:"intelligent wapples"
FOFA: title="intelligent wapples"
Google: intitle:"intelligent wapples"

Source: ProjectDiscovery

References

5