漏洞描述 【漏洞对象】Geneko路由器 【涉及版本】Geneko路由器 【漏洞描述】 Geneko路由器任意文件读取,可以读取etc/passwd,设备的账户配置文件等:/../../../../../../../../../../../../mnt/flash/params/j_admin_admin.params。
相关漏洞推荐 POC CVE-2019-19822: TOTOLINK/Realtek Routers - Information Disclosure POC CVE-2019-19823: TOTOLINK/Realtek Routers - Information Disclosure POC CVE-2019-19825: TOTOLINK/Realtek Routers - CAPTCHA Bypass POC CVE-2016-6277: NETGEAR Routers - Remote Code Execution POC CVE-2017-15647: FiberHome Routers - Local File Inclusion POC CVE-2017-5521: NETGEAR Routers - Authentication Bypass POC CVE-2018-10822: D-Link Routers - Local File Inclusion POC CVE-2018-10823: D-Link Routers - Remote Command Injection POC CVE-2019-1653: Cisco Small Business WAN VPN Routers - Sensitive Information Disclosure POC CVE-2019-16920: D-Link Routers - Remote Code Execution POC CVE-2019-18371: Xiaomi Mi WiFi R3G Routers - Local file Inclusion POC CVE-2019-19824: TOTOLINK Realtek SD Routers - Remote Command Injection POC CVE-2023-20073: Cisco VPN Routers - Unauthenticated Arbitrary File Upload