Exploitation Summary
EIP tracks 2 public exploits for CVE-2012-3001.
PoCs published by Metasploit, Christopher Campbell, juan vazquez, including Metasploit module exploits/multi/http/mutiny_subnetmask_exec.
AI-analyzed exploit summary This Metasploit module exploits an authenticated command injection vulnerability in Mutiny appliances (CVE-2012-3001). It allows remote command execution with root privileges by injecting commands into the network configuration interface.
Description
Mutiny Standard before 4.5-1.12 allows remote attackers to execute arbitrary commands via the network-interface menu, related to a "command injection vulnerability."
Exploits (2)
This Metasploit module exploits an authenticated command injection vulnerability in Mutiny appliances (CVE-2012-3001). It allows remote command execution with root privileges by injecting commands into the network configuration interface.
This Metasploit module exploits an authenticated command injection vulnerability (CVE-2012-3001) in Mutiny appliances prior to version 4.5-1.12. It allows root-level command execution by injecting payloads into the subnet mask configuration field.