Published on August 14th, 2020 📆 | 8448 Views ⚑0
QiHang Media Web Digital Signage 3.0.9 Credential Disclosure ≈ Packet Storm
Vendor: Shenzhen Xingmeng Qihang Media Co., Ltd.
Guangzhou Hefeng Automation Technology Co., Ltd.
Product web page: http://www.howfor.com
Affected version: 126.96.36.199
Summary: Digital Signage Software.
Desc: The application suffers from clear-text credentials disclosure vulnerability
that allows an unauthenticated attacker to issue a request to an unprotected directory
that hosts an XML file ‘/xml/User/User.xml’ and obtain administrative login information
that allows for a successful authentication bypass attack.
Tested on: Microsoft Windows Server 2012 R2 Datacenter
Microsoft Windows Server 2003 Enterprise Edition
HowFor Web Server/188.8.131.52
Microsoft ASP.NET Web QiHang IIS Server
Vulnerability discovered by Gjoko ‘LiquidWorm’ Krstic
Advisory ID: ZSL-2020-5579
Advisory URL: https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5579.php
$ curl http://192.168.1.1/xml/User/User.xml
< ?xml version="1.0" encoding="utf-8"?>