Security
Headlines
HeadlinesLatestCVEs

Headline

TELSAT marKoni FM Transmitter 1.9.5 Root Command Injection PoC Exploit

The marKoni FM transmitters are susceptible to unauthenticated remote code execution with root privileges. An attacker can exploit a command injection vulnerability by manipulating the Email settings’ WAN IP info service, which utilizes the ‘wget’ module. This allows the attacker to gain unauthorized access to the system with administrative privileges by exploiting the ‘url’ parameter in the HTTP GET request to ekafcgi.fcgi.

Zero Science Lab
#vulnerability#rce#auth

Zero Science Lab: Latest News

Akuvox Smart Intercom/Doorphone Unauthenticated Stream Disclosure