漏洞描述 Modem Configuration Interface是一款中保無限路由器管理系统。该系统存在默认口令,攻击者可通过默认口令(sigmu/secom)控制整个平台,使用管理员权限操作核心功能。
相关漏洞推荐 Windows PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710) 新中大ERP企业管理软件 /filesrv/NGInterface/Index SQL 注入漏洞 Windows 11 PolicyConfiguration 计划任务特权提升漏洞(CVE-2025-60710) POC CVE-2001-0537: Cisco IOS HTTP Configuration - Authentication Bypass POC CVE-2010-2307: Motorola SBV6120E SURFboard Digital Voice Modem SBV6X2X-1.0.0.5-SCM - Directory Traversal POC CVE-2014-2321: ZTE Cable Modem Web Shell POC CVE-2017-7925: Dahua Security - Configuration File Disclosure POC CVE-2018-20608: Imcat 4.4 - Phpinfo Configuration POC CVE-2020-12447: Onkyo TX-NR585 Web Interface - Directory Traversal POC CVE-2020-13937: Apache Kylin - Exposed Configuration File POC CVE-2020-2036: Palo Alto Networks PAN-OS Web Interface - Cross Site-Scripting POC CVE-2021-20091: Buffalo WSR-2533DHPL2 - Configuration File Injection POC CVE-2021-27132: Sercomm VD625 Smart Modems - CRLF Injection