EIP-2026-101531
PRE-CVEASUS TM-AC1900 - Arbitrary Command Execution (Metasploit)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101531. PoCs published by b1ack0wl.
AI-analyzed exploit summary This Metasploit module exploits a command injection vulnerability in ASUS TM-AC1900 routers by bypassing a patch for CVE-2018-9285 using percent-encoded newline characters. It executes arbitrary commands via the 'SystemCmd' parameter in '/apply.cgi' and delivers a payload through an HTTP server.
Description
ASUS TM-AC1900 - Arbitrary Command Execution (Metasploit)
Exploits (1)
This Metasploit module exploits a command injection vulnerability in ASUS TM-AC1900 routers by bypassing a patch for CVE-2018-9285 using percent-encoded newline characters. It executes arbitrary commands via the 'SystemCmd' parameter in '/apply.cgi' and delivers a payload through an HTTP server.