The Web Configuration Utility in Meinberg LANTIME devices with firmware before 6.24.004 allows remote authenticated users with certain privileges to read arbitrary files via (1) the ntpclientcounterlogfile parameter to cgi-bin/mainv2 or (2) vectors involving curl support of the "file" schema in the firmware update functionality.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2017/Dec/50 | Issue Tracking Mailing List Third Party Advisory |
http://packetstormsecurity.com/files/145388/Meinberg-LANTIME-Web-Configuration-Utility-6.16.008-Arbitrary-File-Read.html | Issue Tracking Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2017-12-19 07:29
Updated : 2018-01-08 07:33
NVD link : CVE-2017-16786
Mitre link : CVE-2017-16786
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
meinbergglobal
- lantime_m100
- lantime_m300
- lantime_m400
- lantime_m200
- lantime_m1000
- lantime_m900
- lantime_m500
- lantime_m3000
- lantime_firmware
- lantime_m600