mirror of
https://github.com/gobysec/GobyVuls.git
synced 2025-06-20 01:40:20 +00:00
add TOTOLINK routers remote command injection vulnerabilities (CVE-2020-25499)
This commit is contained in:
parent
9cd64325f9
commit
3236d7ab1f
9
TotoLink/CVE-2020-25499/README.md
Normal file
9
TotoLink/CVE-2020-25499/README.md
Normal file
@ -0,0 +1,9 @@
|
||||
# TOTOLINK routers remote command injection vulnerabilities (CVE-2020-25499)
|
||||
|
||||
TOTOLINK A3002RU-V2.0.0 B20190814.1034 allows authenticated remote users to modify the system's 'Run Command'. An attacker can use this functionality to execute arbitrary OS commands on the router.
|
||||
|
||||
**FOFA query rule**: [(body="/boafrm/formLogin" && body="dw(password_warning)")](https://fofa.so/result?qbase64=KGJvZHk9Ii9ib2Fmcm0vZm9ybUxvZ2luIiAmJiBib2R5PSJkdyhwYXNzd29yZF93YXJuaW5nKSIp)
|
||||
|
||||
# Demo
|
||||
|
||||

|
Binary file not shown.
After Width: | Height: | Size: 1.9 MiB |
Loading…
x
Reference in New Issue
Block a user