EIP-2026-101775
PRE-CVEHitron Router CGN3ACSMR 4.5.8.16 - Arbitrary Code Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-101775. PoCs published by Dolev Farhi.
AI-analyzed exploit summary This exploit demonstrates a command injection vulnerability in Hitron CGN3ACSMR routers (version 4.5.8.16) via the ping/tracert functionality in the admin interface. The PoC shows how appending arbitrary commands after an IP address (e.g., `8.8.8.8 && cat /etc/passwd`) results in remote code execution.
Description
Hitron Router CGN3ACSMR 4.5.8.16 - Arbitrary Code Execution
Exploits (1)
This exploit demonstrates a command injection vulnerability in Hitron CGN3ACSMR routers (version 4.5.8.16) via the ping/tracert functionality in the admin interface. The PoC shows how appending arbitrary commands after an IP address (e.g., `8.8.8.8 && cat /etc/passwd`) results in remote code execution.