Exploitation Summary
EIP tracks 1 public exploit for CVE-2015-8279.
PoCs published by Omar Mezrag <[email protected]>, Realistic Security, Algeria, including Metasploit module exploits/linux/http/samsung_srv_1670d_upload_exec.
AI-analyzed exploit summary This Metasploit module exploits an unrestricted file upload vulnerability in Samsung SRN-1670D Web Viewer 1.0.0.193, allowing authenticated attackers to upload and execute arbitrary PHP code. It also leverages CVE-2015-8279 to obtain credentials for authentication.
Description
Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files via a request to an unspecified PHP script.
Exploits (1)
This Metasploit module exploits an unrestricted file upload vulnerability in Samsung SRN-1670D Web Viewer 1.0.0.193, allowing authenticated attackers to upload and execute arbitrary PHP code. It also leverages CVE-2015-8279 to obtain credentials for authentication.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N