lunes, 14 de octubre de 2019

[Comtech] Stored XSS, "Heights Remote Gateway",



Vendor:    Comtech
Model:       H8 Heights Remote Gateway
Firmware:  Version 2.5.1







Administration web:



Login with default credentials
user: comtech
pass: comtech






On the wild:
DORK https://www.shodan.io/search?query=html:"Comtech+EF+Data"




POC, HTML INJECTION:





Set tag html







POC Stored XSS:












Power by;
@CesarSilence




No hay comentarios.:

Publicar un comentario