vendor:
ADM
by:
Matthew Fulton & Kyle Lovett
9.8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: ADM
Affected Version From: ADM 3.1.2RHG1
Affected Version To: ADM 3.1.2RHG1
Patch Exists: NO
Related CWE: CVE-2018-11510
CPE: a:asustor:adm:3.1.2rhg1
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: MacOS, Linux, Windows
2018
Asustor ADM 3.1.2RHG1 – Remote Code Execution
This exploit takes advantage an unauthenticated os command injection discovered by Kyle Lovette if exploitation occurs successfully, a root shell is granted. Authors: matthew fulton and Kyle Lovett. Date: 27 May 2018. Background: Both Kyle and I found a number of vulnerabilities that we had independently reported to Asustor that Asustor hasn't acknowledge nor apparenlty fixed. After a twitter communication Kyle was kind enough to share a few details exploit created on MacOS system, python 2.7.10, may port to metasploit module soon.
Mitigation:
Asustor has not acknowledged nor fixed the vulnerability yet.