CVE-2022-45600
HIGHAztech WMB250AC Firmware 016 2020 - Unauthenticated Remote Code Execution via Session Bypass
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2022-45600. PoCs published by ethancunt.
AI-analyzed exploit summary This PoC demonstrates a command injection vulnerability in Aztech WMB250AC Wireless Mesh Routers, allowing authenticated users to execute arbitrary shell commands as root via the 'id' GET parameter in multiple webpages. The exploit overwrites /etc/passwd to create a backdoor user for telnet access.
Description
Aztech WMB250AC Mesh Routers Firmware Version 016 2020 devices improperly manage sessions, which allows remote attackers to bypass authentication in opportunistic circumstances and execute arbitrary commands with administrator privileges by leveraging an existing web portal login.
Exploits (1)
This PoC demonstrates a command injection vulnerability in Aztech WMB250AC Wireless Mesh Routers, allowing authenticated users to execute arbitrary shell commands as root via the 'id' GET parameter in multiple webpages. The exploit overwrites /etc/passwd to create a backdoor user for telnet access.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H