Cudy WR3000 2.0 设备上运行低于 2.5.24 版本的固件存在操作系统命令注入漏洞。攻击者若具备认证权限,可通过 Mesh MQTT 命令接口发送未经验证和过滤的输入数据,以 root 权限执行任意操作系统命令。其中,sync_command 二进制程序会将未处理的输入直接传递给 command.lua 中的 Shell 执行函数,从而形成命令注入点。具备 MQTT 代理访问权限的攻击者可利用默认启用的命令执行路径,实现完整的 root 级系统控制权获取。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Shenzhen Cudy Technology Co., Ltd. | WR3000 2.0 | < 2.5.24 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Shenzhen Cudy Technology Co., Ltd. | WR3000 2.0 | 0 ~ 2.5.24 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet