.. / CVE-2022-26960

Exploit for elFinder <=2.1.60 - Local File Inclusion (CVE-2022-26960)

Description:

elFinder through 2.1.60 is affected by local file inclusion via connector.minimal.php. This allows unauthenticated remote attackers to read, write, and browse files outside the configured document root. This is due to improper handling of absolute file paths.

Nuclei Template

View the template here CVE-2022-26960.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-26960.yaml
Copy

References:

https://www.synacktiv.com/publications/elfinder-the-story-of-a-repwning.html
https://nvd.nist.gov/vuln/detail/CVE-2022-26960
https://github.com/ARPSyndicate/kenzer-templates
https://www.synacktiv.com/publications.html
https://github.com/Studio-42/elFinder/commit/3b758495538a448ac8830ee3559e7fb2c260c6db