From adfbed9d512fd2003972872bb66d89c00b480858 Mon Sep 17 00:00:00 2001 From: sandeep Date: Thu, 14 Oct 2021 19:50:43 +0530 Subject: [PATCH] lint fix --- vulnerabilities/other/ecoa-building-lfi.yaml | 2 +- vulnerabilities/other/karel-ip-phone-lfi.yaml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/vulnerabilities/other/ecoa-building-lfi.yaml b/vulnerabilities/other/ecoa-building-lfi.yaml index 16995240be..d6bb3d77be 100644 --- a/vulnerabilities/other/ecoa-building-lfi.yaml +++ b/vulnerabilities/other/ecoa-building-lfi.yaml @@ -5,7 +5,7 @@ info: author: gy741 severity: high description: The BAS controller suffers from a directory traversal content disclosure vulnerability. Using the GET parameter cpath in File Manager (fmangersub), attackers can disclose directory content on the affected device - reference: + reference: - https://www.zeroscience.mk/en/vulnerabilities/ZSL-2021-5670.php - https://www.twcert.org.tw/en/cp-139-5140-6343c-2.html tags: ecoa,lfi,cve-2021-41291 diff --git a/vulnerabilities/other/karel-ip-phone-lfi.yaml b/vulnerabilities/other/karel-ip-phone-lfi.yaml index ad51213f64..d2ca25b0c4 100644 --- a/vulnerabilities/other/karel-ip-phone-lfi.yaml +++ b/vulnerabilities/other/karel-ip-phone-lfi.yaml @@ -4,7 +4,7 @@ info: name: Karel IP Phone IP1211 Web Management Panel - Directory Traversal author: 0x_Akoko severity: high - description: A vulnerability in the Karel IP Phone IP1211 Web Management Panel allows remote attackers to access arbitrary files stored on the remote device via the 'cgiServer.exx' endpoint and the 'page' parameter. + description: A vulnerability in the Karel IP Phone IP1211 Web Management Panel allows remote attackers to access arbitrary files stored on the remote device via the 'cgiServer.exx' endpoint and the 'page' parameter. reference: - https://cxsecurity.com/issue/WLB-2020100038 - https://www.karel.com.tr/urun-cozum/ip1211-ip-telefon