Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2022-45699 PoC — APsystems Energy Communication Unit 操作系统命令注入漏洞

Source
Associated Vulnerability
Title:APsystems Energy Communication Unit 操作系统命令注入漏洞 (CVE-2022-45699)
Description:APsystems Energy Communication Unit(APsystems ECU-R)是美国APsystems公司的一个能量通信单元。 APSystems ECU-R 5203版本存在操作系统命令注入漏洞。攻击者利用该漏洞使用timezone参数以root身份执行任意命令。
Description
Command injection in the administration interface in APSystems ECU-R version 5203 allows a remote unauthenticated attacker to execute arbitrary commands as root using the timezone parameter.
File Snapshot

id: CVE-2022-45699 info: name: APsystems ECU-R Firmware - Command Injection author: pussycat0x ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.