A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to version 2.28.23.
[4.0K] /data/pocs/41a4c76320e99643ab2fa173672b66ad8660c1e6
├── [1.9K] arbitrary_file_read_vulnerability.py
├── [1.8K] remote_command_execution_vulnerability.py
├── [4.0K] report
│ ├── [ 88K] 1.png
│ ├── [ 34K] 2.png
│ ├── [106K] 3.png
│ └── [ 16K] report.md
├── [ 9] requirements.txt
└── [1.8K] template.xml
1 directory, 8 files