References https://www.vulncheck.com/advisories/spon-ip-network-intercom-system-arbitrary-file-read https://nvd.nist.gov/vuln/detail/CVE-2024-13982 https://euvd.enisa.europa.eu/enisa/EUVD-2024-54918 https://github.com/D-Haiming/gobypoc/blob/main/SPON-IP-network-intercom-broadcast-system-ping.php-RCE.json https://www.ddosi.org/afrog/ https://mygit.osfipin.com/release/58275738 https://cn-sec.com/archives/1325701.html
Related Vulnerabilitiescellinxnvt-getfilecontent-cgi-fileread: Cellinx NVT - GetFileContent.cgi - FileReadeaa-fileread: EAA 益和应用接入系统任意文件读取esafenet-sql-mysql-fileread: 亿赛通未授权文件下载huatiandongli-ntkodownload-fileread: 华天动力 ntkoDownload 任意文件读取huatiandongli-templateservice-fileread: 华天动力 ntkoDownload 任意文件读取huijietong-cloud-fileread: Huijietong Cloud File Readmapgis-cloud-manager-local-file-read: MapGis Cloud Manager Local File Readqibo-cms-job-file-read: Qibo CMS Job File Readsangfor-reporter-anyfileread: Sangfor reporter 任意文件读取solr-file-read: Apache Solr <= 8.8.1 Arbitrary File Readspon-ip-intercom-ping-rce: Hikvision SPON IP网络对讲广播系统存在命令执行漏洞yonyou-nc-portalfile-fileread: 用友NC portal/file 任意文件读取漏洞PoCs3-public-read: S3 Bucket with Public READ Access