vendor:
Heat Pump
by:
Jelmer de Hen
8,8
CVSS
HIGH
Local File Inclusion (LFI)
98
CWE
Product Name: Heat Pump
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
NIBE Heat Pump LFI Exploit
This exploit allows an attacker to read files from a vulnerable NIBE heat pump. The exploit is done by sending a GET request to the heat pump's web server with a crafted URL containing the path of the file to be read. The request must also include a valid username and password in the form of a base64 encoded string in the Authorization header.
Mitigation:
Ensure that the web server is not accessible from the internet and that the username and password are not the default ones.