Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2018-17873 — WiFiRanger 7.0.8rc3 Incorrect Access Control - Privilege Escalation | Kitploit
Tools/GitHubGitHub/luct0r/cve-2018-17873
Privilege EscalationExploit FrameworksVulnerability AnalysisExploitationPenetration TestingRed TeamingArchived
GitHubluct0r/cve-2018-17873

CVE-2018-17873

WiFiRanger 7.0.8rc3 Incorrect Access Control - Privilege Escalation

View Repository
16 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2018-17873

WiFiRanger indoor routers (Core, GoAC) and their outdoor paired routers (Sky Pro, EliteAC, EliteAC FM) running firmware version 7.0.8rc3 and earlier allow anonymous FTP read/write access and have left the SSH Private Key in the clear - making it a trivial task to view/copy the key and log in with root privileges.

Adjacent network access required to exploit this vulnerability.

Exploit:

Extremely simple shell script that grabs the private key and logs in as root.

Usage:

./wifiRangerPwn.sh <WiFiRanger IP>

Download Tool