CVE-2017-16666
HIGHXplico < 1.2.1 - Unauthenticated Remote Code Execution via PCAP File Upload
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2017-16666.
PoCs published by Mehmet Ince, Mehmet Ince <[email protected]>, including Metasploit module exploits/linux/http/xplico_exec.
AI-analyzed exploit summary This Metasploit module exploits an unauthenticated remote code execution vulnerability in Xplico by registering a new user, activating it via a predictable token, and injecting commands through a PCAP file upload feature.
Description
Xplico before 1.2.1 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the name of an uploaded PCAP file. NOTE: this issue can be exploited without authentication by leveraging the user registration feature.
Exploits (2)
This Metasploit module exploits an unauthenticated remote code execution vulnerability in Xplico by registering a new user, activating it via a predictable token, and injecting commands through a PCAP file upload feature.
This Metasploit module exploits an unauthenticated remote code execution vulnerability in Xplico by registering a new user, activating it via a predictable token, and injecting commands through a PCAP file upload feature.
References (6)
Scores
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H