PT-2021-10717 · Inim Electronics · Inim Electronics Smartliving Smartlan/G/Si
Sipke Mellema
·
Published
2021-04-29
·
Updated
2021-05-05
·
CVE-2020-22002
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Inim Electronics Smartliving SmartLAN/G/SI versions prior to 7.x
Description
An Unauthenticated Server-Side Request Forgery (SSRF) issue exists within the GetImage functionality. The application uses user-supplied data in the
host parameter to construct an image request through onvif.cgi. Since the host parameter is not validated, an attacker can specify an external domain, forcing the application to make an HTTP request to an arbitrary destination host.Recommendations
For Inim Electronics Smartliving SmartLAN/G/SI versions prior to 7.x, consider validating the
host parameter in the GetImage functionality to prevent SSRF attacks. As a temporary workaround, restrict access to the onvif.cgi service to minimize the risk of exploitation.Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Inim Electronics Smartliving Smartlan/G/Si