CVE-2020-35370
HIGHraysync < 3.3.3.8 - Unauthenticated Remote Code Execution via Path Traversal
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-35370. PoCs published by james.
AI-analyzed exploit summary This exploit leverages a path traversal vulnerability in Raysync to overwrite the remote manage.db file, allowing an attacker to reset the admin password and gain unauthorized access. Arbitrary command execution is achieved by modifying the RaySyncServer.sh script and triggering a reset.
Description
A RCE vulnerability exists in Raysync below 3.3.3.8. An unauthenticated unauthorized attacker sending a specifically crafted request to override the specific file in server with malicious content can login as "admin", then to modify specific shell file to achieve remote code execution(RCE) on the hosting server.
Exploits (1)
This exploit leverages a path traversal vulnerability in Raysync to overwrite the remote manage.db file, allowing an attacker to reset the admin password and gain unauthorized access. Arbitrary command execution is achieved by modifying the RaySyncServer.sh script and triggering a reset.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H