PT-2021-10717 · Inim Electronics · Inim Electronics Smartliving Smartlan/G/Si

Sipke Mellema

·

Published

2021-04-29

·

Updated

2021-05-05

·

CVE-2020-22002

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Inim Electronics Smartliving SmartLAN/G/SI versions prior to 7.x
Description An Unauthenticated Server-Side Request Forgery (SSRF) issue exists within the GetImage functionality. The application uses user-supplied data in the host parameter to construct an image request through onvif.cgi. Since the host parameter is not validated, an attacker can specify an external domain, forcing the application to make an HTTP request to an arbitrary destination host.
Recommendations For Inim Electronics Smartliving SmartLAN/G/SI versions prior to 7.x, consider validating the host parameter in the GetImage functionality to prevent SSRF attacks. As a temporary workaround, restrict access to the onvif.cgi service to minimize the risk of exploitation.

Exploit

Fix

SSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-22002

Affected Products

Inim Electronics Smartliving Smartlan/G/Si