Add CVE-2021-3017

This commit is contained in:
xiaoheihei1107 2021-08-25 17:47:28 +08:00 committed by GitHub
parent e16a0eeb1c
commit fd469095e2
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -0,0 +1,9 @@
# Intelbras Wireless Information leakage (CVE-2021-3017)
The web interface on Intelbras WIN 300 and WRN 342 devices through 2021-01-04 allows remote attackers to discover credentials by reading the def_wirelesspassword line in the HTML source code.
FOFA **query rule**: [title="Roteador Wireless" && body="def_wirelesspassword"](https://fofa.so/result?qbase64=dGl0bGU9IlJvdGVhZG9yIFdpcmVsZXNzIiAmJiBib2R5PSJkZWZfd2lyZWxlc3NwYXNzd29yZCI%3D)
# Demo
![Intelbras_Wireless_Information_leakage_CVE_2021_3017](Intelbras_Wireless_Information_leakage_CVE_2021_3017.gif)