The HTTPD binary in multiple ZTE routers has a local file...
High severity
Unreviewed
Published
Sep 16, 2024
to the GitHub Advisory Database
•
Updated Sep 18, 2024
Description
Published by the National Vulnerability Database
Sep 16, 2024
Published to the GitHub Advisory Database
Sep 16, 2024
Last updated
Sep 18, 2024
The HTTPD binary in multiple ZTE routers has a local file inclusion vulnerability in session_init function. The session -LUA- files are stored in the directory /var/lua_session, the function iterates on all files in this directory and executes them using the function dofile without any validation if it is a valid session file or not. An attacker who is able to write a malicious file in the sessions directory can get RCE as root.
References