Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-10077. PoCs published by bzyo.
AI-analyzed exploit summary This exploit demonstrates multiple vulnerabilities in Geist WatchDog Console 3.2.2, including XXE, XSS, and insecure file permissions. It provides detailed steps to exploit each vulnerability, including file manipulation and remote data exfiltration.
Description
XML external entity (XXE) vulnerability in Geist WatchDog Console 3.2.2 allows remote authenticated administrators to read arbitrary files via crafted XML data.
Exploits (1)
This exploit demonstrates multiple vulnerabilities in Geist WatchDog Console 3.2.2, including XXE, XSS, and insecure file permissions. It provides detailed steps to exploit each vulnerability, including file manipulation and remote data exfiltration.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N