Exploitation Summary
EIP tracks 1 public exploit for CVE-2014-7279. PoCs published by gamehacker.
AI-analyzed exploit summary The exploit describes an authentication bypass vulnerability in Konke Smart Plug (Version K) where the device's telnet port (23) is open and allows root access without a password. The writeup provides steps to exploit this vulnerability using telnet.
Description
The Konke Smart Plug K does not require authentication for TELNET sessions, which allows remote attackers to obtain "equipment management authority" via TCP traffic to port 23.
Exploits (1)
The exploit describes an authentication bypass vulnerability in Konke Smart Plug (Version K) where the device's telnet port (23) is open and allows root access without a password. The writeup provides steps to exploit this vulnerability using telnet.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H