Exploitation Summary
CVE-2016-6255 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 2 public exploits from researchers including Jacob Baines.
AI-analyzed exploit summary This HTML-based exploit leverages CVE-2013-4863 and CVE-2016-6255 to achieve remote code execution on MiCasa VeraLite devices by exploiting a vulnerable libupnp server and executing a reverse shell via Lua code injection.
Description
Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registered handler.
Exploits (2)
This HTML-based exploit leverages CVE-2013-4863 and CVE-2016-6255 to achieve remote code execution on MiCasa VeraLite devices by exploiting a vulnerable libupnp server and executing a reverse shell via Lua code injection.
This repository contains a proof-of-concept exploit for CVE-2016-6255, which leverages a combination of vulnerabilities (CVE-2013-4863 and CVE-2016-6255) to achieve remote code execution on VeraLite devices. The exploit uses WebRTC to leak the client's internal IP, then crafts a malicious request to create a file on the target device, ultimately executing a reverse shell.
References (10)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N