add : pfSense_Arbitrary_File_Write_to_RCE

This commit is contained in:
gaopeng2 2022-06-24 12:02:40 +08:00
parent 75e7b8df85
commit d03317d855
2 changed files with 10 additions and 0 deletions

10
pfsense/README.md Normal file
View File

@ -0,0 +1,10 @@
# pfSense Arbitrary File Write to RCE
diag_routes.php in pfSense 2.5.2 allows sed data injection. The data is retrieved by executing the netstat utility, and then its output is parsed via the sed utility.
FOFA **query rule**: [app="pfSense"](https://fofa.info/result?qbase64=YXBwPSJwZlNlbnNlIg%3D%3D)
# Demo
![pfSense_Arbitrary_File_Write_to_RCE](pfSense_Arbitrary_File_Write_to_RCE.gif)

Binary file not shown.

After

Width:  |  Height:  |  Size: 860 KiB