
CVE-2020-8958: Exploit RCE autenticato per NetLink HG323
CVE-2020-8958: Exploit di Esecuzione Remota di Codice Autenticato per router NetLink che utilizzano il server boa.
Punteggio CVSS: 7.2
Tipo(i) di Vulnerabilità: OS Command Injection
Autenticazione: Richiesta
Modelli Interessati: HG323
La risorsa /boaform/admin/formPing nei router Netlink consente a utenti malintenzionati remoti di eseguire OS Command Injection tramite il parametro target_addr.
usage: CVE-2020-8958.py [-h] -i URL [-u [USER]] [-p [PASS]]
CVE-2020-8958: Authenticated remote code execution exploit
optional arguments:
-h, --help show this help message and exit
-i URL, --Url URL Target IP of router
-u [USER], --User [USER]
Username
-p [PASS], --Pass [PASS]
Password