mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-16 20:27:21 +00:00
19 lines
804 B
Markdown
19 lines
804 B
Markdown
|
|
### [CVE-2015-2797](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2797)
|
||
|
|

|
||
|
|

|
||
|
|

|
||
|
|
|
||
|
|
### Description
|
||
|
|
|
||
|
|
Stack-based buffer overflow in AirTies Air 6372, 5760, 5750, 5650TT, 5453, 5444TT, 5443, 5442, 5343, 5342, 5341, and 5021 DSL modems with firmware 1.0.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the redirect parameter to cgi-bin/login.
|
||
|
|
|
||
|
|
### POC
|
||
|
|
|
||
|
|
#### Reference
|
||
|
|
- https://www.exploit-db.com/exploits/36577/
|
||
|
|
- https://www.exploit-db.com/exploits/37170/
|
||
|
|
|
||
|
|
#### Github
|
||
|
|
- https://github.com/echel0nn/having-fun-with-qiling
|
||
|
|
|