digitalwhisper.co.il
http://www.digitalwhisper.co.il/files/Zines/0x56/DW86-1-RepeaterHack.pdf CVE-2017-8770
HIGH
Wireless Repeater BE126 - Local File Inclusion
Record summary
CVE-2017-8770 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.
Description
There is LFD (local file disclosure) on BE126 WIFI repeater 1.0 devices that allows attackers to read the entire filesystem on the device via a crafted getpage parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWireless Repeater BE126 - Local File InclusionExploitDB exploitby Hay MizrachiNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-8770 42547exploit
https://www.exploit-db.com/exploits/42547