AwindInc SNMP Service Command Injection
Posted by deepcore on September 6, 2019 – 2:37 am
This Metasploit module exploits a vulnerability found in AwindInc and OEM’ed products where untrusted inputs are fed to ftpfw.sh system command, leading to command injection. A valid SNMP read-write community is required to exploit this vulnerability.
Post a reply
You must be logged in to post a comment.