Iocharger AC Models Authenticated Arbitrary File Upload Vulnerability
Vulnerability
An authenticated vulnerability allowing arbitrary file uploads has been identified in Iocharger firmware for AC models prior to version 24120701. The issue arises from a CGI binary that can be accessed by any user, although the file upload interface is only available to the 'iocadmin' user. Exploitation of this vulnerability requires knowledge of the CGI binary and access to a low-privilege account, or the ability to persuade a user with such access to upload a file. The uploaded files can be placed in either '/tmp/upload/' or '/tmp/', but cannot be accessed or utilized without the presence of additional vulnerabilities.
Impact
Exploitation of this vulnerability allows for arbitrary file uploads to temporary directories, but the uploaded files cannot be accessed or used without other vulnerabilities.
Remediation
Iocharger has released a firmware update version 24120701 that addresses this vulnerability. For versions 25010801, which fixes an additional three vulnerabilities, Iocharger products should be updated through their distributor. If support is not available through the distributor, Iocharger can be contacted directly via email for the firmware update.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
