Description
Smartliving SmartLAN/G/SI <=6.x contains an unauthenticated server-side request forgery vulnerability in the GetImage functionality through the 'host' parameter. Attackers can exploit the onvif.cgi endpoint by specifying external domains to bypass firewalls and perform network enumeration through arbitrary HTTP requests.
Problem types
Server-Side Request Forgery (SSRF)
Product status
505
515
1050
1050/G3
10100L
10100L/G3
Credits
Sipke Mellema
References
www.zeroscience.mk/en/vulnerabilities/ZSL-2019-5545.php (Zero Science Lab Vulnerability Advisory)
www.exploit-db.com/exploits/47764 (Exploit Database Entry 47764)
packetstormsecurity.com/files/155617 (Packet Storm Security Exploit File)
exchange.xforce.ibmcloud.com/vulnerabilities/172839 (IBM X-Force Vulnerability Exchange Entry)
www.inim.biz/ (INIM Vendor Homepage)