CVE-2023-34723
HIGHTechView LA-5570 Wireless Gateway 1.0.19_T53 - Sensitive Information Exposure via /config/system.conf
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2023-34723. PoCs published by The Security Team [exploitsecurity.io].
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in Techview LA-5570 Wireless Gateway Home Automation Controller, allowing unauthorized access to sensitive configuration files containing credentials. The script retrieves the system.conf file via a direct HTTP request, exposing system_password.
Description
An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows attackers to gain sensitive information via /config/system.conf.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in Techview LA-5570 Wireless Gateway Home Automation Controller, allowing unauthorized access to sensitive configuration files containing credentials. The script retrieves the system.conf file via a direct HTTP request, exposing system_password.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N