GobyVuls/Tenda/uploadWewifiPic RCE
gaopeng2 8b0f1aae4e add: Zabbix CVE-2022-23131
add: Tenda uploadWewifiPic RCE
2022-02-24 14:54:43 +08:00
..
2022-02-24 14:54:43 +08:00

Tenda Auth uploadWewifiPic RCE

Tenda router is an efficient and practical router. There is a command execution vulnerability in the uploadWewifiPic route in the background of Tenda routers. Attackers can use the vulnerability to execute arbitrary commands to obtain server permissions.

FOFA query rule: body="Tenda|登录" && body="tenda.css"

Demo

Tenda_Auth_uploadWewifiPic_RCE