Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-6896. PoCs published by Indrajith.A.N.
AI-analyzed exploit summary This exploit demonstrates a privilege escalation vulnerability in DIGISOL DG-HR1400 routers by manipulating a Base64-encoded session cookie. By changing the cookie value from 'VVNFUg==' (USER) to 'QURNSU4=' (ADMIN), an attacker can escalate privileges to admin.
Description
Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router enables an attacker to escalate from user privilege to admin privilege just by modifying the Base64-encoded session cookie value.
Exploits (1)
This exploit demonstrates a privilege escalation vulnerability in DIGISOL DG-HR1400 routers by manipulating a Base64-encoded session cookie. By changing the cookie value from 'VVNFUg==' (USER) to 'QURNSU4=' (ADMIN), an attacker can escalate privileges to admin.
References (5)
Scores
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H