HTTP: OpenCart Archive Extraction Directory Traversal

This signature detects attempts to exploit a known vulnerability against OpenCart. A successful attack can lead to directory traversal and arbitrary code execution.

Extended Description

This affects versions of the package opencart/opencart from 4.0.0.0. A Zip Slip issue was identified via the marketplace installer due to improper sanitization of the target path, allowing files within a malicious archive to traverse the filesystem and be extracted to arbitrary locations. An attacker can create arbitrary files in the web root of the application and overwrite other existing files by exploiting this vulnerability.

Affected Products

Opencart opencart

References

CVE: CVE-2024-21518

Short Name
HTTP:DIR:OPEN-CRT-ZIP-SLIP
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Archive CVE-2024-21518 Directory Extraction OpenCart Traversal
Release Date
08/05/2024
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3729
False Positive
Unknown
Vendors

Opencart

Found a potential security threat?