Description
FLIR Thermal Camera F/FC/PT/D firmware version 8.0.0.64 contains an information disclosure vulnerability that allows unauthenticated attackers to read arbitrary files through unverified input parameters. Attackers can exploit the /var/www/data/controllers/api/xml.php readFile() function to access local system files without authentication.
Problem types
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
Credits
LiquidWorm as Gjoko Krstic of Zero Science Lab
References
www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5434.php
www.zeroscience.mk/en/vulnerabilities/ZSL-2017-5434.php (Zero Science Lab Vulnerability Advisory)
www.exploit-db.com/exploits/42786/ (Exploit Database Entry 42786)
packetstormsecurity.com/files/144322 (Packet Storm Security Exploit Archive)
cxsecurity.com/issue/WLB-2017090202 (CXSecurity Vulnerability Listing)
web.archive.org/....flir.com/security/blog/details/?ID=87043 (Archived FLIR Security Advisory)