Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-44260 PoC — WAVLINK AC1200 访问控制错误漏洞

Source
Associated Vulnerability
Title:WAVLINK AC1200 访问控制错误漏洞 (CVE-2021-44260)
Description:WAVLINK AC1200是中国睿因科技(WAVLINK)公司的一个双频大功率无线路由器。 WAVLINK AC1200 WAVLINK-A42W-1.27.6-20180418版本存在安全漏洞,该漏洞源于live_mfg.html缺少对于敏感信息的保护和权限限制。未经身份验证的攻击者可以访问该页面利用该漏洞获取路由器管理器的关键信息。
Description
A vulnerability is in the 'live_mfg.html' page of the WAVLINK AC1200, version WAVLINK-A42W-1.27.6-20180418, which can allow a remote attacker to access this page without any authentication. When processed, it exposes some key information of the manager of router.
File Snapshot

id: CVE-2021-44260 info: name: WAVLINK AC1200 - Information Disclosure author: ritikchaddha s ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.