Exploits / Vulnerability Discovered : 2021-07-29 |
Type : webapps |
Platform : hardware
This exploit / vulnerability Longjing technology bems api 1.21 remote arbitrary file download is for educational purposes only and if it is used you will do on your own risk!
Longjing Technology BEMS API 1.21 Remote Arbitrary File Download
Vendor: Longjing Technology
Product web page: http://www.ljkj2012.com
Affected version: 1.21
Summary: Battery Energy Management System.
Desc: The application suffers from an unauthenticated arbitrary
file download vulnerability. Input passed through the fileName
parameter through downloads endpoint is not properly verified
before being used to download files. This can be exploited to
disclose the contents of arbitrary and sensitive files through
directory traversal attacks.
Tested on: nginx/1.19.1
Vulnerability discovered by Gjoko 'LiquidWorm' Krstic
@zeroscience