
إثبات مفهوم لثغرة أُعيدت صياغته من https://github.com/utmost3/cve/issues/2 لا أنسب لنفسي أي فضل في اكتشاف الثغرة. هذا لأغراض تعليمية وعرض الأعمال فقط.
إثبات مفهوم الثغرة الأمنية لحقن RCE عبر رقم التعريف الشخصي للبلوتوث CVE-2026-6992، أعيدت صياغته من https://github.com/utmost3/cve/issues/2 لا أنسب لنفسي فضل اكتشاف الثغرة الأمنية. هذا لأغراض تعليمية وعرض الأعمال فقط. بالنسبة للأجهزة التي لا تدعم الإدارة عبر إمكانيات البلوتوث، قد لا يعمل إثبات المفهوم هذا. طلبات JNAP صعبة.
يجب أن يعمل هذا الاستغلال مع أجهزة التوجيه MR9600 التي تتمتع بقدرات البلوتوث
usage: CVE-2026-6992-PoC.py [-h] -ti TARGETIP [-tp TARGETPORT] -lp LISTENPORT -li LISTENIP [-u USERNAME] [-p PASSWORD] [-s]
options:
-h, --help show this help message and exit
-ti, --targetIP TARGETIP
Target IP address of the vulnerable router
-tp, --targetPort TARGETPORT
Listening port for the administrative interface, defualts to 80
-lp, --listenPort LISTENPORT
Listening port on the testers machine
-li, --listenIP LISTENIP
IP address that is listening, usually 192.168.1.1
-u, --username USERNAME
Administrator username to be used, defaults to admin
-p, --password PASSWORD
Password for the administrator account, defaults to admin
-s, --https Use https instead of http, http is most common listening protocol on MR9600