cve/2017/CVE-2017-14335.md
2024-05-26 14:27:05 +02:00

773 B

CVE-2017-14335

Description

On Beijing Hanbang Hanbanggaoke devices, because user-controlled input is not sufficiently sanitized, sending a PUT request to /ISAPI/Security/users/1 allows an admin password change.

POC

Reference

No PoCs from references.

Github