CVE-2017-20212
FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains an information disclosure vulnerability that allows unauthenticated attackers to read arbitrary files through unverified input parameters.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (9.46%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains an information disclosure vulnerability that allows unauthenticated attackers to read arbitrary files through unverified input parameters. Attackers can exploit the /var/www/data/controllers/api/xml.php readFile() function to access local system files without authentication.
- CVSS 4.0
- 8.7 HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
- EPSS
- 9.46% probability · 95th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Source
- disclosure@vulncheck.com
References
- https://cxsecurity.com/issue/WLB-2017090202
- https://packetstormsecurity.com/files/144322
- https://web.archive.org/web/20171011125811/https://www.flir.com/security/blog/details/?ID=87043
- https://www.exploit-db.com/exploits/42786/
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5434.php
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5434.php
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.