vendor:
DIR8xx Routers
by:
embedi
8,8
CVSS
HIGH
Improper Access Control
284
CWE
Product Name: DIR8xx Routers
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2020
Upload Custom Firmware to a Device
This exploit allows an attacker to upload custom firmware to a device by accessing an ethernet port. This is possible because the system recovery service is started and available for a few seconds after restart. The attacker can use a wget command to check if the system is vulnerable and then use a curl command to upload the custom firmware.
Mitigation:
Restrict access to the ethernet port and ensure that the system recovery service is not available after restart.