cve/2020/CVE-2020-23584.md
2024-05-25 21:48:12 +02:00

789 B

CVE-2020-23584

Description

Unauthenticated remote code execution in OPTILINK OP-XT71000N, Hardware Version: V2.2 occurs when the attacker passes arbitrary commands with IP-ADDRESS using " | " to execute commands on " /diag_tracert_admin.asp " in the "PingTest" parameter that leads to command execution.

POC

Reference

No PoCs from references.

Github