PoC-in-GitHub/2024/CVE-2024-48705.json
2025-01-15 15:32:14 +09:00

33 lines
No EOL
1.3 KiB
JSON

[
{
"id": 899256024,
"name": "CVE-2024-48705",
"full_name": "L41KAA\/CVE-2024-48705",
"owner": {
"login": "L41KAA",
"id": 54420351,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/54420351?v=4",
"html_url": "https:\/\/github.com\/L41KAA",
"user_view_type": "public"
},
"html_url": "https:\/\/github.com\/L41KAA\/CVE-2024-48705",
"description": "Wavlink AC1200 with firmware versions M32A3_V1410_230602 and M32A3_V1410_240222 are vulnerable to a post-authentication command injection while resetting the password. This vulnerability is specifically found within the \"set_sys_adm\" function of the \"adm.cgi\" binary, and is due to improper santization of the user provided \"newpass\" field.",
"fork": false,
"created_at": "2024-12-05T22:45:58Z",
"updated_at": "2024-12-05T23:01:09Z",
"pushed_at": "2024-12-05T23:01:06Z",
"stargazers_count": 0,
"watchers_count": 0,
"has_discussions": false,
"forks_count": 1,
"allow_forking": true,
"is_template": false,
"web_commit_signoff_required": false,
"topics": [],
"visibility": "public",
"forks": 1,
"watchers": 0,
"score": 0,
"subscribers_count": 1
}
]