From 340b4753b590a9207810ce66058dc0984b371547 Mon Sep 17 00:00:00 2001 From: wy876 Date: Wed, 3 Jul 2024 09:13:06 +0800 Subject: [PATCH] CVE-2024-22853 --- ...C750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853).md | 10 ++++++++++ README.md | 1 + 2 files changed, 11 insertions(+) create mode 100644 D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853).md diff --git a/D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853).md b/D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853).md new file mode 100644 index 0000000..b2c0a0e --- /dev/null +++ b/D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853).md @@ -0,0 +1,10 @@ +## D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853) + +D-LINK的Go-RT-AC750 RTAC750_A1_FW_v101b03固件在AlphaNetworks账户中使用了硬编码密码,远程攻击者可以通过telnet会话获得root权限。 + +## poc + +``` +Alphanetworks:wrgac18_dlob.hans_ac750 +``` + diff --git a/README.md b/README.md index d30fa43..5a48977 100644 --- a/README.md +++ b/README.md @@ -14,6 +14,7 @@ - 大华ICC智能物联综合管理平台heapdump敏感信息泄露 - 英飞达医学影像存档与通信系统Upload.asmx任意文件上传漏洞 - GeoServer属性名表达式前台代码执行漏洞(CVE-2024-36401) +- D-LINK-Go-RT-AC750 GORTAC750_A1_FW_v101b03存在硬编码漏洞(CVE-2024-22853) ## 2024.06.28 新增漏洞