vendor:
HG532e Router
by:
Rebellion
8.8
CVSS
HIGH
Command Injection
78
CWE
Product Name: HG532e Router
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: h:huawei:hg532e_router
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Linux
2020
Exploit for Huawei HG532e Router
This exploit is for Huawei HG532e Router. It is a command injection vulnerability which allows an attacker to execute arbitrary commands on the vulnerable router. The exploit uses the Upgrade service of the router to execute the commands. The exploit is written in Python and uses the requests library to send the malicious payload to the router.
Mitigation:
The user should update the router to the latest version and should not use default credentials.