Post

Milesight Router Httpd Log Information Leakage Vulnerability Cve 2023 4714

Milesight Router Httpd Log Information Leakage Vulnerability Cve 2023 4714

Milesight Router httpd.log Information Leakage Vulnerability CVE-2023-4714

Vulnerability Description

Milesight Router has an information leak vulnerability. Attackers can obtain login sensitive log information by accessing httpd.log.

Vulnerability Impact

Milesight Router

Network surveying and mapping

“rt_title”

Vulnerability reappears

Login page

img

Verify POC

1
/lang/log/httpd.log

img

This post is licensed under CC BY 4.0 by the author.